blob: e52f051123a6a9fa08a2feb8e0281db5510c9423 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
|
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://cas.cuni.cz/idp/shibboleth">
<md:Extensions>
<mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://www.eduid.cz/" registrationInstant="2010-09-21T15:24:17Z">
<mdrpi:RegistrationPolicy xml:lang="en">http://www.eduid.cz/wiki/_media/en/eduid/policy/policy_eduid_en-1_1.pdf</mdrpi:RegistrationPolicy>
<mdrpi:RegistrationPolicy xml:lang="cs">http://www.eduid.cz/wiki/_media/eduid/policy/policy_eduid_cz-1_1-3.pdf</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
<mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
<saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue>http://eduid.cz/uri/idp-group/university</saml:AttributeValue>
</saml:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">cuni.cz</shibmd:Scope>
<mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
<mdui:DisplayName xml:lang="en">Charles University in Prague</mdui:DisplayName>
<mdui:DisplayName xml:lang="cs">Univerzita Karlova v Praze</mdui:DisplayName>
<mdui:Description xml:lang="en">Identity Provider for Charles University students and staff</mdui:Description>
<mdui:Description xml:lang="cs">Identity Provider pro studenty a zaměstance Univerzity Karlovy v Praze</mdui:Description>
<mdui:InformationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</mdui:InformationURL>
<mdui:InformationURL xml:lang="cs">http://www.cuni.cz/</mdui:InformationURL>
<mdui:Logo height="40" width="41">https://ldap.cuni.cz/images/UK_logo_40.png</mdui:Logo>
<mdui:Logo height="89" width="91">https://ldap.cuni.cz/images/UK_logo.png</mdui:Logo>
</mdui:UIInfo>
<eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
<eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
</eduidmd:RepublishRequest>
</md:Extensions>
<md:KeyDescriptor>
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>
MIIDMTCCAhmgAwIBAgIJANqPbg8m3ZcAMA0GCSqGSIb3DQEBCwUAMEoxCzAJBgNV
BAYTAkNaMSUwIwYDVQQKExxDaGFybGVzIFVuaXZlcnNpdHkgaW4gUHJhZ3VlMRQw
EgYDVQQDEwtjYXMuY3VuaS5jejAeFw0xNTAxMjAwOTUwNDRaFw0yMDAxMTkwOTUw
NDRaMEoxCzAJBgNVBAYTAkNaMSUwIwYDVQQKExxDaGFybGVzIFVuaXZlcnNpdHkg
aW4gUHJhZ3VlMRQwEgYDVQQDEwtjYXMuY3VuaS5jejCCASIwDQYJKoZIhvcNAQEB
BQADggEPADCCAQoCggEBAN0feuG6+FLnbIh05Zmy487kOMkpOxMC2herMuXuVR+l
e/SlicUomEeJGImbTC/THTGvn0+Y9ROKkZHu16tQ8uyMDxNZX5g/JMZNIp+yOlnG
cTwtUPtpgABNAVTVwdG34E24hQVzO3B+bTJXtGtzDOmu/c7R8uVwlK6d2BNQBlu9
SA6W4xvNOwSjBCpdZgG++uj+GwGKuPEaFh534MX2LoCOExGC6khoj2thMhUMBQPt
81Uio99xdbT3/e5bs89iRxmrsqGwOWUPdx1zBJG5NqI4b/m8wbJ1htH/6yLm8TCo
V/mZlCLUBzn45secmhN3OhAoq4IiHH2XqAwc8xWKyRMCAwEAAaMaMBgwFgYDVR0R
BA8wDYILY2FzLmN1bmkuY3owDQYJKoZIhvcNAQELBQADggEBALsTJzFgI0Nf+0l5
FccXlhEbCxzHtHPmiETIus2hEKY0zuWsqm9mGOr/+30ng862mJ/kok4YZPGrJZue
AgJo/dveZGCWetZv65XFDBl+gE2G/+TJplM41XEHSWJ15EhpCECxXhlBw0vRon+h
6HBmGrLZzzy0F2+5dGqf6cZW8T6NToJRVWBxPTKs26bgER/Clj1EfkNubmU+u91F
oErcj4bh09j1zv6Dt6c6N4Zdzsq6bg9sYRVRB4d80zhfw61qz0+Ln2Rp/k95aaOe
czKNjg972Y385kSS8YEHXlVJbnuZHeqAnsq6v1L6b6FFQEkgFfoNPMLxpPzKFtRg
qzjW2e0=
</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.cuni.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
<md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://cas.cuni.cz/idp/profile/Shibboleth/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cuni.cz/idp/profile/SAML2/POST/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cas.cuni.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.cuni.cz/idp/profile/SAML2/Redirect/SSO"/>
</md:IDPSSODescriptor>
<md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">cuni.cz</shibmd:Scope>
</md:Extensions>
<md:KeyDescriptor>
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.cuni.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
<md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cuni.cz:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
<md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
</md:AttributeAuthorityDescriptor>
<md:Organization>
<md:OrganizationName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationName>
<md:OrganizationName xml:lang="en">Charles University in Prague</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="cs">Univerzita Karlova v Praze</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="en">Charles University in Prague</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="en">http://www.cuni.cz/UKENG-1.html</md:OrganizationURL>
<md:OrganizationURL xml:lang="cs">http://www.cuni.cz/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="technical">
<md:GivenName>Michal</md:GivenName>
<md:SurName>Vocu</md:SurName>
<md:EmailAddress>michal@cuni.cz</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
|