summaryrefslogtreecommitdiff
path: root/swamid-2.0/valda.uhr.se-shibboleth.xml
blob: 7a4f396d6eed0923559e348f665b8ee19c9fd799 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://valda.uhr.se/shibboleth">
  <md:Extensions>
    <mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2018-01-04T13:27:42Z">
      <mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
    </mdrpi:RegistrationInfo>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
    <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
    <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
    <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
      <samla:Attribute xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" Name="http://macedir.org/entity-category">
        <samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
      </samla:Attribute>
    </mdattr:EntityAttributes>
  </md:Extensions>
  <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol">
    <md:Extensions>
      <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://valda.uhr.se/Shibboleth.sso/DS/Login"/>
      <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://valda.uhr.se/Shibboleth.sso/DS/Login" index="1"/>
      <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://valda.uhr.se/Shibboleth.sso/Login"/>
      <mdui:UIInfo>
        <mdui:DisplayName xml:lang="sv">Valda</mdui:DisplayName>
        <mdui:DisplayName xml:lang="en">Valda</mdui:DisplayName>
        <mdui:Description xml:lang="sv">Valda</mdui:Description>
        <mdui:Description xml:lang="en">Valda</mdui:Description>
        <mdui:InformationURL xml:lang="sv">https://www.uhr.se/systemtjanster-for-larosaten/stodsystem-for-larosaten/validering--digitalt-ansoknings--och-administrationssystem-valda/</mdui:InformationURL>
        <mdui:InformationURL xml:lang="en">https://www.uhr.se/systemtjanster-for-larosaten/stodsystem-for-larosaten/validering--digitalt-ansoknings--och-administrationssystem-valda/</mdui:InformationURL>
        <mdui:PrivacyStatementURL xml:lang="sv">https://valda.uhr.se/home/privacypolicy/</mdui:PrivacyStatementURL>
        <mdui:PrivacyStatementURL xml:lang="en">https://valda.uhr.se/home/privacypolicy/</mdui:PrivacyStatementURL>
        <mdui:Logo xml:lang="sv" height="83" width="83">https://nyaanvandarstod.uhr.se/globalassets/uhr_symbol_lila.png</mdui:Logo>
        <mdui:Logo xml:lang="en" height="83" width="83">https://nyaanvandarstod.uhr.se/globalassets/uhr_symbol_lila.png</mdui:Logo>
      </mdui:UIInfo>
    </md:Extensions>
    <md:KeyDescriptor>
      <ds:KeyInfo>
        <ds:KeyName>uhrweb11.i.uhr.se</ds:KeyName>
        <ds:X509Data>
          <ds:X509SubjectName>CN=uhrweb11.i.uhr.se</ds:X509SubjectName>
          <ds:X509Certificate>MIID+jCCAmKgAwIBAgIJAMc92zbDHPunMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV
BAMTEXVocndlYjExLmkudWhyLnNlMB4XDTE4MDEwNDA5NDg0MVoXDTI4MDEwMjA5
NDg0MVowHDEaMBgGA1UEAxMRdWhyd2ViMTEuaS51aHIuc2UwggGiMA0GCSqGSIb3
DQEBAQUAA4IBjwAwggGKAoIBgQC0bW1WcmtpI5sK4EJ1WB9+clQLizhAKL9Ok9e5
yRMIYpnDgLgGhAhRymRcDAuwsICtmBmECjFK3HIgiX6+PPDfr+4AYqzt1HFoxyRO
jFJSB2fXQJx0hSAWFYQRo4tDcmLDCHHLJbleBrlKne4Pr84slpwfFvdTgEY6QiAw
Z/5zx0Z4+yuekuwbJiYnJDC2dxiPGN/Vs6hW0CSHYWU7sfgavL8hgNug5BNAdt5Y
ZfdCu8pYR9oWFVUefxBVJMVlpcxGyUIUmdhBAKlamYI88u9ACIQQGGedNsXdW6SJ
zRuIzu+n1Jm6SIJZM9Zh9Yw7oPti92azL73+YBMbwtHAx0fpKz4e1d6haEiDDqm4
b6Vwtf9uw+96IWr6+FSczRJBRXtvcUSH5DDbYZJY1bpwhZFrJqhyaouLoDzT9f/0
zjaD3hFgvTCGSyE+4Dqe6FcpXrNkr5rvAZvsAV5sTBEaAwlbVrbPPpZ3T4b81sZ7
5ROffhhusOhHpon4xZY42UqYARsCAwEAAaM/MD0wHAYDVR0RBBUwE4IRdWhyd2Vi
MTEuaS51aHIuc2UwHQYDVR0OBBYEFC/eLdFkZsq3cCGMDJqVhdposSMJMA0GCSqG
SIb3DQEBCwUAA4IBgQB09rSwy8CUvFYhKHi8Fd4wpvBVxUHziio0ziGzFUhzcBgf
ZP5K3DYgJAaViaFrMkMePdydklWXy/Dn0pKZ8JaCxHL1ZRM3NkmA7SVKWluchiUa
T251u/BlMA/BwwjAxVh2+NVOH8VNh+IuZR2jdrgI9k4zi3nCywikvvfG4djw3EVr
+rA2fO2Ul2BOMFZu36/SEEN/kCyNeFLRN0GOweB+DMk5yOZt7oM4OfYVm90a1WGZ
Ti04hluKrlA7T1wgPGcabe3MgMK3Tps9QLGJ9VGKJZO7wCSZlnW7syxGzwjMaCJ/
s3RsLImcgbCPUhjEbn7UX/75TvnJj+NQJjwF4ONAqXOzUjEgcIW6NkteX0ktDySZ
vmKhQu0BVyEAnNu7uO9Q3rddJsK2N5DSjhQDl+H/LR+VPGsqTSULKrQoHudsYeKP
RrcgAwWR573F+C6Cqrt89uDpyQ8ZM2Z+LZdIvrhBYV/lO7Dk9uZF2d9f7ew48DeA
/P6i510LqFmJvhvEmcc=
</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
      <md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
    </md:KeyDescriptor>
    <md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://valda.uhr.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://valda.uhr.se/Shibboleth.sso/SLO/SOAP"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://valda.uhr.se/Shibboleth.sso/SLO/Redirect"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://valda.uhr.se/Shibboleth.sso/SLO/POST"/>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://valda.uhr.se/Shibboleth.sso/SLO/Artifact"/>
    <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://valda.uhr.se/Shibboleth.sso/NIM/SOAP"/>
    <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://valda.uhr.se/Shibboleth.sso/NIM/Redirect"/>
    <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://valda.uhr.se/Shibboleth.sso/NIM/POST"/>
    <md:ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://valda.uhr.se/Shibboleth.sso/NIM/Artifact"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://valda.uhr.se/Shibboleth.sso/SAML2/POST" index="1"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://valda.uhr.se/Shibboleth.sso/SAML2/Artifact" index="3"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://valda.uhr.se/Shibboleth.sso/SAML2/ECP" index="4"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://valda.uhr.se/Shibboleth.sso/SAML/POST" index="5"/>
    <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://valda.uhr.se/Shibboleth.sso/SAML/Artifact" index="6"/>
    <!-- Required för personnummer -->
    <md:AttributeConsumingService index="1">
      <md:ServiceName xml:lang="en">Valda</md:ServiceName>
      <md:ServiceName xml:lang="sv">Valda</md:ServiceName>
      <md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
      <md:RequestedAttribute FriendlyName="personalIdentityNumber" Name="urn:oid:1.2.752.29.4.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
    </md:AttributeConsumingService>
  </md:SPSSODescriptor>
  <md:Organization>
    <md:OrganizationName xml:lang="sv">Universitets- och högskolerådet</md:OrganizationName>
    <md:OrganizationName xml:lang="en">Swedish Council for Higher Education</md:OrganizationName>
    <md:OrganizationDisplayName xml:lang="sv">Universitets- och högskolerådet</md:OrganizationDisplayName>
    <md:OrganizationDisplayName xml:lang="en">Swedish Council for Higher Education</md:OrganizationDisplayName>
    <md:OrganizationURL xml:lang="sv">https://www.uhr.se</md:OrganizationURL>
    <md:OrganizationURL xml:lang="en">https://www.uhr.se/en/start/</md:OrganizationURL>
  </md:Organization>
  <md:ContactPerson contactType="administrative">
    <md:Company>Universitets- och högskolerådet</md:Company>
    <md:EmailAddress>mailto:valdasupport@uhr.se</md:EmailAddress>
  </md:ContactPerson>
  <md:ContactPerson contactType="technical">
    <md:Company>Universitets- och högskolerådet</md:Company>
    <md:EmailAddress>mailto:valdasupport@uhr.se</md:EmailAddress>
  </md:ContactPerson>
  <md:ContactPerson contactType="support">
    <md:Company>Universitets- och högskolerådet</md:Company>
    <md:EmailAddress>mailto:valdasupport@uhr.se</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>