blob: 2333327d795e7998b9e08e3c9ef3d66befd5db4a (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
|
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://idp.soc.cas.cz/idp/shibboleth">
<md:Extensions>
<eduidmd:RepublishRequest xmlns:eduidmd="http://eduid.cz/schema/metadata/1.0">
<eduidmd:RepublishTarget>http://edugain.org/</eduidmd:RepublishTarget>
</eduidmd:RepublishRequest>
<mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://www.eduid.cz/" registrationInstant="2014-07-24T14:09:34Z">
<mdrpi:RegistrationPolicy xml:lang="en">http://www.eduid.cz/wiki/_media/en/eduid/policy/policy_eduid_en-1_1.pdf</mdrpi:RegistrationPolicy>
<mdrpi:RegistrationPolicy xml:lang="cs">http://www.eduid.cz/wiki/_media/eduid/policy/policy_eduid_cz-1_1-3.pdf</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
<mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
<saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue>http://eduid.cz/uri/idp-group/avcr</saml:AttributeValue>
</saml:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">soc.cas.cz</shibmd:Scope>
<mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
<mdui:DisplayName xml:lang="en">Institute of Sociology AS CR</mdui:DisplayName>
<mdui:DisplayName xml:lang="cs">Sociologický ústav AV ČR</mdui:DisplayName>
<mdui:Description xml:lang="en">Identity Provider SOU AV CR employees.</mdui:Description>
<mdui:Description xml:lang="cs">Identity Provider pro zaměstnance SOÚ AV ČR</mdui:Description>
<mdui:InformationURL xml:lang="en">http://www.soc.cas.cz/</mdui:InformationURL>
<mdui:InformationURL xml:lang="cs">http://www.soc.cas.cz/</mdui:InformationURL>
<mdui:Logo height="44" width="70">https://gedeon.cas.cz/loga/logo-soc-44.png</mdui:Logo>
<mdui:Logo height="1237" width="1959">https://gedeon.cas.cz/loga/logo-soc-1237.png</mdui:Logo>
</mdui:UIInfo>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>
MIIDIzCCAgugAwIBAgIUAmQDhA8umPob28qOghHn32MeLRQwDQYJKoZIhvcNAQEL
BQAwGTEXMBUGA1UEAwwOaWRwLnNvYy5jYXMuY3owHhcNMTYxMTAyMTAyNzA1WhcN
MzYxMTAyMTAyNzA1WjAZMRcwFQYDVQQDDA5pZHAuc29jLmNhcy5jejCCASIwDQYJ
KoZIhvcNAQEBBQADggEPADCCAQoCggEBAIYQdV2zC8VCWWPuykUlATse2c98fHDW
9axKBsCQ7K3F1XtZcIDyqLW0ivOFh4bvKHwFgDrfitoQ2kSl/Bfgv4AZQTgrP6lw
JrFClkB9/UEXfAGdxtakLcoplAfQPM3QqAvnu/GEb5+lylndXXVCuCuFsx3Ub3xf
HpgMppfKRlF0DbHPj2ilEbCsjWoQiIVPg6zZ6fP05FUn0w3aJh4wmzlIu3ciGzjl
qd/EeQMB8L/lpHkPNQTmyQUG7Gxb6iCE08nq12ud1OOkzstUd43jrA3LzuBlZbQx
QBRkMU1uIlk332eb02L3EYF0EWQ60t1tc5J+8QMk2rcPs3xX96NtPUsCAwEAAaNj
MGEwHQYDVR0OBBYEFEsTVSS6TmzEEORLSv1yp3s+60DaMEAGA1UdEQQ5MDeCDmlk
cC5zb2MuY2FzLmN6hiVodHRwczovL2lkcC5zb2MuY2FzLmN6L2lkcC9zaGliYm9s
ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQAmpJng/Zz/JWxgX9hoAJ837o8YQQ4K9463
d22HgJNE/QfF2t55D0QbRL7mF3rnckMApXX8l1VaPvbjzGJn0aPaxr+CRRO9YVoW
PhxkqU+q0DNDRXDpeuG5qANqk97SCFPpaY70CCdsvbFAlaPQWfvVVO8IFKKuFmBU
Wy4JyzWtdhPtW0+AOT+N7uIbctmOrLrfXFMFrqsLc+g7wQAWppPtiCQZvrKq8Wax
IUJpiOjFD/QE0Je3UGkX9G9TT68t6qIefGO77JTOGIme3k+5r59XhNMaGaFXyVbX
Ll2hitYTPboV0jYw76MysSr+iltkGGeq63zOokg2tFzuMghByaNb
</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.soc.cas.cz:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.soc.cas.cz:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
<md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.soc.cas.cz/idp/profile/Shibboleth/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.soc.cas.cz/idp/profile/SAML2/POST/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.soc.cas.cz/idp/profile/SAML2/POST-SimpleSign/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.soc.cas.cz/idp/profile/SAML2/Redirect/SSO"/>
</md:IDPSSODescriptor>
<md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">soc.cas.cz</shibmd:Scope>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>
MIIDJDCCAgygAwIBAgIVALZzVNrCMD/HjwOK0M7Qy2wUHi1EMA0GCSqGSIb3DQEB
CwUAMBkxFzAVBgNVBAMMDmlkcC5zb2MuY2FzLmN6MB4XDTE2MTEwMjEwMjcwNloX
DTM2MTEwMjEwMjcwNlowGTEXMBUGA1UEAwwOaWRwLnNvYy5jYXMuY3owggEiMA0G
CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCWPq7eqmJ/bPPcdy1qtHhqG9Fm8cKu
4MLr145R7/6H6So04LKL1N+IY6XuDe6FW9QgPPdOBC6W9NaEpZQWWE1T+soACZxA
U0+uqU1BawT25s/cuuinyfjxwkBonBs8nZbuKu1gmxBXABvfKMlzxOL2CWIbdZ3/
iAtVNdHLaYISnbJXshyhZHDDHki4kBzHzT8maQLTCZD4Pk005xnm9pF/LipGQz7t
y5u4RrBgZj0Uizv4EQAMvZKuhzwWE+trobard3jO6aSK9zf17Lgnuh40yiUwelIW
B3AuplnE/Sn/2/fZ5Xxr/RnYloTdd3cOft8zBQQduucVxo3oxX201wKNAgMBAAGj
YzBhMB0GA1UdDgQWBBR0hD2OsPJqNYsydyhSW1p5IYcahDBABgNVHREEOTA3gg5p
ZHAuc29jLmNhcy5jeoYlaHR0cHM6Ly9pZHAuc29jLmNhcy5jei9pZHAvc2hpYmJv
bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAXZXn0q1ACJX+DgCclV23K6/XpybkvqxQ
sEBPH1+DG8pSuMjzZVi1Wsv2W1aZs+GZpFY1zzRkyJDJff2t6Xlv4wpPB/zEfvUn
/jyVrx/Ye3H3Fm7g3SY4c7CSXRpgUAYccBBTQCdDIq7pW10QjzLFrswteXry9Bpc
LzBvhOCI5s8EJB2TBPkRAy0mWIbHS5FmHDXBEFB5PFH4mTY6Vy33QatDKXYxpbLC
/BTPHX6upTKWSJrXmQ60TeKWapQq5dcBstdxd2Tb1tpyvRRMmaBfT0EA6uDXgPe1
zHM8Cs1KgVSYCIZoRb9tgnLX/Tqz68eDlIBL0m5s52erOK28qHMoEw==
</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.soc.cas.cz:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
</md:AttributeAuthorityDescriptor>
<md:Organization>
<md:OrganizationName xml:lang="en">Institute of Sociology of the Academy of Sciences of the Czech Republic</md:OrganizationName>
<md:OrganizationName xml:lang="cs">Sociologický ústav AV ČR</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="en">Institute of Sociology, Public Research Institution</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="cs">Sociologický ústav AV ČR, v.v.i.</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="en">http://www.soc.cas.cz/</md:OrganizationURL>
<md:OrganizationURL xml:lang="cs">http://www.soc.cas.cz/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="technical">
<md:GivenName>Petr</md:GivenName>
<md:SurName>Vaníček</md:SurName>
<md:EmailAddress>vanicekp@utia.cas.cz</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
|