blob: ff08dfd8ce70d7ac18843fbefe762fa74d618a86 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
|
<?xml version="1.0" encoding="UTF-8"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://services-federation.renater.fr/validation/ressource">
<Extensions>
<mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="https://federation.renater.fr/gestion" registrationInstant="2009-01-06T14:09:14Z">
<mdrpi:RegistrationPolicy xml:lang="en">https://federation.renater.fr/en/metadata_registration_practice_statement</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
</Extensions>
<SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol urn:oasis:names:tc:SAML:2.0:protocol">
<Extensions>
<mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
<mdui:DisplayName xml:lang="en">RENATER - validation resource</mdui:DisplayName>
<mdui:Description xml:lang="en">This SP allows validation of identity providers. The resource prints the list of user attributes received from the identity provider.</mdui:Description>
<mdui:DisplayName xml:lang="fr">RENATER - ressource de validation de la fédération Education-Recherche (Shibboleth v2)</mdui:DisplayName>
<mdui:Description xml:lang="fr">La ressource de validation permet à un organisme membre de tester son fournisseur d'identités au sein de la fédération Éducation-Recherche.
Cette ressource permet de visualiser tous les attributs utilisateur transmis dans le contexte de la session d'authentification.
RENATER propose également une ressource de test, proposant l'équivalent dans la fédération de Test.
Cette ressource ne requiert aucun attribut, elle se contente d'afficher les attributs transmis par l'IdP.</mdui:Description>
</mdui:UIInfo>
</Extensions>
<KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</KeyDescriptor>
<KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</KeyDescriptor>
<NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
<AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://services-federation.renater.fr/validation/ressource/Shibboleth.sso/SAML/POST" index="1" isDefault="true"/>
<AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://services-federation.renater.fr/validation/ressource/Shibboleth.sso/SAML2/POST" index="2"/>
<AttributeConsumingService index="0">
<ServiceName xml:lang="fr">RENATER - ressource de validation de la fédération Education-Recherche (Shibboleth v2)</ServiceName>
<ServiceName xml:lang="en">RENATER - validation resource</ServiceName>
<ServiceDescription xml:lang="fr">La ressource de validation permet à un organisme membre de tester son fournisseur d'identités au sein de la fédération Éducation-Recherche.
Cette ressource permet de visualiser tous les attributs utilisateur transmis dans le contexte de la session d'authentification.
RENATER propose également une ressource de test, proposant l'équivalent dans la fédération de Test.
Cette ressource ne requiert aucun attribut, elle se contente d'afficher les attributs transmis par l'IdP.</ServiceDescription>
<ServiceDescription xml:lang="en">This SP allows validation of identity providers. The resource prints the list of user attributes received from the identity provider.</ServiceDescription>
<RequestedAttribute FriendlyName="supannAutreMail" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.34" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuEtape" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.29" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuId" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannMailPerso" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.15" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuRegimeInscription" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.31" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannAutreTelephone" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuDiplome" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEmpId" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="mailForwardingAddress" Name="urn:oid:2.16.840.1.113730.3.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="labeledURI" Name="urn:oid:1.3.6.1.4.1.250.1.57" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuElementPedagogique" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.28" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannRole" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.21" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannRoleEntite" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.24" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannCivilite" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="facsimileTelephoneNumber" Name="urn:oid:2.5.4.23" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="l" Name="urn:oid:2.5.4.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannActivite" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannCodeINE" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannAffectation" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="title" Name="urn:oid:2.5.4.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonNickname" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuAnneeInscription" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.25" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuSecteurDisciplinaire" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.32" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEntiteAffectationPrincipale" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEntiteAffectation" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannListeRouge" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuCursusAnnee" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.26" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtablissement" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.14" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannRoleGenerique" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.23" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuInscription" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.30" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="userCertificate" Name="urn:oid:2.5.4.36" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannEtuTypeDiplome" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.33" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduOrgLegalName" Name="urn:oid:1.3.6.1.4.1.5923.1.2.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="supannOrganisme" Name="urn:oid:1.3.6.1.4.1.7135.1.2.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
<RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
</AttributeConsumingService>
</SPSSODescriptor>
<Organization>
<OrganizationName xml:lang="en">RENATER</OrganizationName>
<OrganizationDisplayName xml:lang="en">RENATER</OrganizationDisplayName>
<OrganizationURL xml:lang="en">https://www.renater.fr</OrganizationURL>
</Organization>
<ContactPerson contactType="technical">
<EmailAddress>equipe-federation@listes.renater.fr</EmailAddress>
</ContactPerson>
</EntityDescriptor>
|