blob: f4f1107929f82c4604cdfc9ae327e29e590a0bfb (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
|
<?xml version="1.0"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://aai-viewer.switch.ch/shibboleth">
<Extensions>
<mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://rr.aai.switch.ch/" registrationInstant="2012-01-12T13:28:11Z">
<mdrpi:RegistrationPolicy xml:lang="en">https://www.switch.ch/aai/federation/switchaai/metadata-registration-practice-statement.txt</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
</Extensions>
<SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
<Extensions>
<mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
<mdui:DisplayName xml:lang="de">Attributes Viewer</mdui:DisplayName>
<mdui:DisplayName xml:lang="en">AAI Attributes Viewer</mdui:DisplayName>
<mdui:Description xml:lang="de">Der AAI Attribute Viewer ist ein Dienst, der alle verfügbaren Attribute eines Benutzers anzeigt. Attribute werden 10 Tage in einer Logdatei aufbewahrt.</mdui:Description>
<mdui:Description xml:lang="en">The AAI Attribute Viewer is a service that displays all available attributes of a user. This is useful for development and debugging. Attributes are stored 10 days in a log file.</mdui:Description>
</mdui:UIInfo>
</Extensions>
<KeyDescriptor>
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</KeyDescriptor>
<KeyDescriptor>
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</KeyDescriptor>
<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SLO/Redirect"/>
<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SLO/POST"/>
<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SLO/Artifact"/>
<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SLO/SOAP"/>
<ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-viewer.switch.ch/Shibboleth.sso/NIM/Redirect"/>
<ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-viewer.switch.ch/Shibboleth.sso/NIM/POST"/>
<ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aai-viewer.switch.ch/Shibboleth.sso/NIM/Artifact"/>
<ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-viewer.switch.ch/Shibboleth.sso/NIM/SOAP"/>
<NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
<AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
<AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
<AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
<AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
<AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SAML/POST" index="5"/>
<AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://aai-viewer.switch.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
<AttributeConsumingService index="1">
<ServiceName xml:lang="de">Attributes Viewer</ServiceName>
<ServiceName xml:lang="en">AAI Attributes Viewer</ServiceName>
<ServiceDescription xml:lang="de">Der AAI Attribute Viewer ist ein Dienst, der alle verfügbaren Attribute eines Benutzers anzeigt. Attribute werden 10 Tage in einer Logdatei aufbewahrt.</ServiceDescription>
<ServiceDescription xml:lang="en">The AAI Attribute Viewer is a service that displays all available attributes of a user. This is useful for development and debugging. Attributes are stored 10 days in a log file.</ServiceDescription>
<RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="primaryGroupID" Name="urn:oid:1.3.6.1.4.1.7165.2.1.15" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonNickname" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
</AttributeConsumingService>
</SPSSODescriptor>
<Organization>
<OrganizationName xml:lang="en">switch.ch</OrganizationName>
<OrganizationDisplayName xml:lang="en">SWITCH</OrganizationDisplayName>
<OrganizationURL xml:lang="en">http://www.switch.ch/</OrganizationURL>
</Organization>
<ContactPerson contactType="technical">
<GivenName>SWITCHaai</GivenName>
<SurName>Team</SurName>
<EmailAddress>aai@switch.ch</EmailAddress>
<TelephoneNumber>+41 44 268 15 05</TelephoneNumber>
</ContactPerson>
</EntityDescriptor>
|