blob: 6f858d17f03a96715830ddc66519af9ee7837312 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
|
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://idp.ipm.cas.cz/idp/shibboleth">
<md:Extensions>
<eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
<eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
</eduidmd:RepublishRequest>
<mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://www.eduid.cz/" registrationInstant="2014-05-02T15:43:18Z">
<mdrpi:RegistrationPolicy xml:lang="en">http://www.eduid.cz/wiki/_media/en/eduid/policy/policy_eduid_en-1_1.pdf</mdrpi:RegistrationPolicy>
<mdrpi:RegistrationPolicy xml:lang="cs">http://www.eduid.cz/wiki/_media/eduid/policy/policy_eduid_cz-1_1-3.pdf</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
<mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
<saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
</saml:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">ipm.cas.cz</shibmd:Scope>
<mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
<mdui:DisplayName xml:lang="en">Institute of Physics of Materials of the AS CR</mdui:DisplayName>
<mdui:DisplayName xml:lang="cs">Ústav fyziky materiálů AV ČR</mdui:DisplayName>
<mdui:Description xml:lang="en">Identity Provider IPM AV CR employees.</mdui:Description>
<mdui:Description xml:lang="cs">Identity Provider pro zaměstnance ÚFM AV ČR</mdui:Description>
<mdui:InformationURL xml:lang="en">http://www.ipm.cz/</mdui:InformationURL>
<mdui:InformationURL xml:lang="cs">http://www.ipm.cz/</mdui:InformationURL>
<mdui:Logo height="44" width="74">https://gedeon.cas.cz/loga/logo-ipm-44.png</mdui:Logo>
<mdui:Logo height="411" width="960">https://gedeon.cas.cz/loga/logo-ipm-129.png</mdui:Logo>
</mdui:UIInfo>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>
MIIDJDCCAgygAwIBAgIVAIy2CcJh3HnLZbmJ0e44ERg/GD0EMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5pcG0uY2FzLmN6MB4XDTE2MTAyNDA5MDgzMVoX
DTM2MTAyNDA5MDgzMVowGTEXMBUGA1UEAwwOaWRwLmlwbS5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC1cVf2tGjQasUUFcH2769ZuKO1ayRr
zKofnfNTzZ9yr4prsI2/1QxFtuW+v2aj9MsS8+1Z1eaMYR3wTEriyXyKyeMnhnvu
RgmWCXZG3pu84YM50TTr/Q7Esqz3RPnC0Y8bKNzHIrh1Y+cN+QzgNQPY5wof1/LJ
CtjmkaVvyfpN7ZZX8+3chUdqZ98D7Ym6Ud87tfcI6Ign7DRVjK7DX549RPf9B4RY
WzClqCI7nFRK6r0V6cai7Hylxv0iv5Ct3hgRjmBLOG30lZ3Kf4eQ2DCUiSa6evQG
AqP9p2uu+1b7Jh9Ofpg+YroGQx0K2lACPgNd0SD0Mc2drnqAZDGfLWXnAgMBAAGj
YzBhMB0GA1UdDgQWBBQCkjNnEuyi1MtVR6tqPq5DBcAt8DBABgNVHREEOTA3gg5p
ZHAuaXBtLmNhcy5jeoYlaHR0cHM6Ly9pZHAuaXBtLmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAgGjXFbaGd69rKEnqNJWMbk2KkMPWRsot
4OoxpMdX33MpT4oE/iOmykvBQ/PeMSnLhwmgx149dCbRHV0UDxV1JI8IVdWGl8jP
dLdtiGQ5o1EzaiZ37KYp7Ld1OfFu17LJlMvGazQ5dLHQ9bYh/KtTRuQ9YdAzqfbg
glBF2DzPj/LZYYR+uXJOCK/TlHeNLNsS6lVVgR32mgLt5uHCe0BkDhkJPxjrwsEO
DYSz8ZY9eYiZJFNCm0rFW8P7YK2JqWrLII1zkYdKPw869L4VhxtD2/9yqeQsNKfK
eaEJ5IhXcWWAHLbkJt+l8/Iut92CIIt26uadKCeCGYlkD8eRmI4uFA==
</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ipm.cas.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ipm.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
<md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ipm.cas.cz/idp/profile/Shibboleth/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ipm.cas.cz/idp/profile/SAML2/POST/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ipm.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ipm.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
</md:IDPSSODescriptor>
<md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">ipm.cas.cz</shibmd:Scope>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ipm.cas.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
</md:AttributeAuthorityDescriptor>
<md:Organization>
<md:OrganizationName xml:lang="en">Institute of Physics of Materials</md:OrganizationName>
<md:OrganizationName xml:lang="cs">Ústav fyziky materiálů Akademie věd České republiky</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="en">Institute of Physics of Materials of the Academy of Sciences of the Czech Republic, v. v. i.</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="cs">Ústav fyziky materiálů Akademie věd České republiky, v.v.i.</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="en">http://www.ipm.cz/</md:OrganizationURL>
<md:OrganizationURL xml:lang="cs">http://www.ipm.cz/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="technical">
<md:GivenName>Petr</md:GivenName>
<md:SurName>Vaníček</md:SurName>
<md:EmailAddress>vanicekp@utia.cas.cz</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
|