blob: d0a53be0a85468b49644e9e6b066644425f2d0dd (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
|
<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:samla="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" entityID="https://sp-t1.oru.se/shibboleth">
<md:Extensions>
<mdrpi:RegistrationInfo registrationAuthority="http://www.swamid.se/" registrationInstant="2022-12-08T08:16:15Z">
<mdrpi:RegistrationPolicy xml:lang="en">http://swamid.se/policy/mdrps</mdrpi:RegistrationPolicy>
</mdrpi:RegistrationInfo>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
<mdattr:EntityAttributes>
<samla:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<samla:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</samla:AttributeValue>
<samla:AttributeValue>https://refeds.org/category/code-of-conduct/v2</samla:AttributeValue>
</samla:Attribute>
</mdattr:EntityAttributes>
</md:Extensions>
<md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sp-t1.oru.se/Shibboleth.sso/DS/Login"/>
<idpdisc:DiscoveryResponse Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sp-t1.oru.se/Shibboleth.sso/DS/Login" index="1"/>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sp-t1.oru.se/Shibboleth.sso/Login-AL2"/>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sp-t1.oru.se/Shibboleth.sso/WAYF/idp.antagning.se"/>
<init:RequestInitiator Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sp-t1.oru.se/Shibboleth.sso/WAYF/idp.test.antagning.se"/>
<mdui:UIInfo>
<mdui:Description xml:lang="en">Test system for Central webservice for Örebro University. The system is handling student activation, re-enrolls students and registers existing and new student accounts aswell as act as intermediary for password changes. EduID is used to validate AL2 accounts.</mdui:Description>
<mdui:Description xml:lang="sv">Testsystem för Central webbtjänst för Örebro universitet. Systemet aktiverar, återaktiverar och kursregistrerar nya och befintliga studentkonton samt är ombudssystem för lösenordsbyten. EduID används för att validera AL2-konton.</mdui:Description>
<mdui:DisplayName xml:lang="en">Central webservice for Örebro University</mdui:DisplayName>
<mdui:DisplayName xml:lang="sv">Central webbtjänst för Örebro universitet</mdui:DisplayName>
<mdui:InformationURL xml:lang="en">https://www.oru.se/utbildning/jag-ar-student/mina-studier/registrering/transfer-of-personal-data-to-the-central-webservice-for-orebro-university-in-connection-with-federated-login-privacy-policy</mdui:InformationURL>
<mdui:InformationURL xml:lang="sv">https://www.oru.se/utbildning/jag-ar-student/mina-studier/registrering/transfer-of-personal-data-to-the-central-webservice-for-orebro-university-in-connection-with-federated-login-privacy-policy</mdui:InformationURL>
<mdui:PrivacyStatementURL xml:lang="en">https://www.oru.se/utbildning/jag-ar-student/mina-studier/registrering/transfer-of-personal-data-to-the-central-webservice-for-orebro-university-in-connection-with-federated-login-privacy-policy</mdui:PrivacyStatementURL>
<mdui:PrivacyStatementURL xml:lang="sv">https://www.oru.se/utbildning/jag-ar-student/mina-studier/registrering/transfer-of-personal-data-to-the-central-webservice-for-orebro-university-in-connection-with-federated-login-privacy-policy</mdui:PrivacyStatementURL>
</mdui:UIInfo>
</md:Extensions>
<md:KeyDescriptor>
<ds:KeyInfo>
<ds:KeyName>sp-t1.oru.se</ds:KeyName>
<ds:X509Data>
<ds:X509SubjectName>emailAddress=itsupport@oru.se,CN=sp-t1.oru.se,O=Internet Widgits Pty Ltd,ST=Some-State,C=SE</ds:X509SubjectName>
<ds:X509Certificate>MIIFgTCCA2kCFAngqMeO4J95JnZRbmafUPwPXuGUMA0GCSqGSIb3DQEBCwUAMH0x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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp-t1.oru.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp-t1.oru.se/Shibboleth.sso/SLO/SOAP"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sp-t1.oru.se/Shibboleth.sso/SLO/Redirect"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp-t1.oru.se/Shibboleth.sso/SLO/POST"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp-t1.oru.se/Shibboleth.sso/SLO/Artifact"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp-t1.oru.se/Shibboleth.sso/SAML2/POST" index="1"/>
<md:AttributeConsumingService index="1">
<md:ServiceName xml:lang="en">Central webservice for Örebro University</md:ServiceName>
<md:ServiceName xml:lang="sv">Central webbtjänst för Örebro universitet</md:ServiceName>
<md:RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
<md:RequestedAttribute FriendlyName="norEduPersonNIN" Name="urn:oid:1.3.6.1.4.1.2428.90.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
</md:AttributeConsumingService>
</md:SPSSODescriptor>
<md:Organization>
<md:OrganizationName xml:lang="en">Örebro University</md:OrganizationName>
<md:OrganizationName xml:lang="sv">Örebro universitet</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="en">Örebro University</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="sv">Örebro universitet</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="en">https://www.oru.se/</md:OrganizationURL>
<md:OrganizationURL xml:lang="sv">https://www.oru.se/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="administrative">
<md:SurName>IT-support</md:SurName>
<md:EmailAddress>mailto:itsupport@oru.se</md:EmailAddress>
</md:ContactPerson>
<md:ContactPerson contactType="technical">
<md:SurName>IT-support</md:SurName>
<md:EmailAddress>mailto:itsupport@oru.se</md:EmailAddress>
<md:TelephoneNumber>+46 19 303166</md:TelephoneNumber>
</md:ContactPerson>
<md:ContactPerson contactType="support">
<md:EmailAddress>mailto:itsupport@oru.se</md:EmailAddress>
</md:ContactPerson>
<md:ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
<md:GivenName>IT support</md:GivenName>
<md:EmailAddress>mailto:itsupport@oru.se</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
|