blob: db00e972d963c6b0ea39771c00c8961a6ecdedfa (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
|
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://shib-idp.dev.ja.net/idp/shibboleth">
<md:Extensions>
<mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
<saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
</saml:Attribute>
</mdattr:EntityAttributes>
<mdrpi:RegistrationInfo xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" registrationAuthority="http://ukfederation.org.uk" registrationInstant="2015-08-26T09:17:56Z">
<mdrpi:RegistrationPolicy xml:lang="en">http://ukfederation.org.uk/doc/mdrps-20130902</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
</md:Extensions>
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">dev.ja.net</shibmd:Scope>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.dev.ja.net:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.dev.ja.net:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-idp.dev.ja.net/idp/profile/SAML2/Redirect/SLO"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-idp.dev.ja.net/idp/profile/SAML2/POST/SLO"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-idp.dev.ja.net/idp/profile/SAML2/POST-SimpleSign/SLO"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.dev.ja.net:8443/idp/profile/SAML2/SOAP/SLO"/>
<md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib-idp.dev.ja.net/idp/profile/Shibboleth/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-idp.dev.ja.net/idp/profile/SAML2/POST/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-idp.dev.ja.net/idp/profile/SAML2/POST-SimpleSign/SSO"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-idp.dev.ja.net/idp/profile/SAML2/Redirect/SSO"/>
</md:IDPSSODescriptor>
<md:AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">dev.ja.net</shibmd:Scope>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.dev.ja.net:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
<md:AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.dev.ja.net:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
</md:AttributeAuthorityDescriptor>
<md:Organization>
<md:OrganizationName xml:lang="en">JISC Collections and Janet Limited</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="en">Jisc Technologies (Development Shibboleth IdP)</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="en">http://www.jisc.ac.uk/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="support">
<md:GivenName>Rhys</md:GivenName>
<md:SurName>Smith</md:SurName>
<md:EmailAddress>mailto:Rhys.Smith@jisc.ac.uk</md:EmailAddress>
</md:ContactPerson>
<md:ContactPerson contactType="technical">
<md:GivenName>Rhys</md:GivenName>
<md:SurName>Smith</md:SurName>
<md:EmailAddress>mailto:Rhys.Smith@jisc.ac.uk</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
|