diff --git a/nefed.xml b/nefed.xml index c48c20515ab5aac8f991c56269153777ed52264d..7d5bb1385584c30b6f71feff418e4de76d7a09db 100644 --- a/nefed.xml +++ b/nefed.xml @@ -35555,86 +35555,86 @@ PRD49iI+tL/VkGo= </ContactPerson> </EntityDescriptor> <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_c038f90863deaa0fb5a9af9a18264c4e4157a86b" entityID="https://unl.tind.io/shibboleth"> - <Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> - <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> - <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> - <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> - <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> - <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> - <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> - <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" /> - <mdattr:EntityAttributes> - <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> - <saml:AttributeValue>https://nebraska.edu/category/registered-by-nefed</saml:AttributeValue> - </saml:Attribute> - <saml:Attribute Name="http://shibboleth.net/ns/attributes/releaseAllValues" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> - <saml:AttributeValue>unNUID</saml:AttributeValue> - </saml:Attribute> - </mdattr:EntityAttributes> - <mdui:UIInfo> - <mdui:DisplayName xml:lang="en">TIND IR</mdui:DisplayName> - <mdui:Description xml:lang="en">TIND IR</mdui:Description> - <mdui:InformationURL xml:lang="en">https://www.tind.io/ir</mdui:InformationURL> - <mdui:PrivacyStatementURL xml:lang="en">https://www.tind.io/privacy_policy</mdui:PrivacyStatementURL> - <mdui:Logo height="48" width="48" xml:lang="en"></mdui:Logo> - </mdui:UIInfo> + <Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" /> + <mdattr:EntityAttributes> + <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>https://nebraska.edu/category/registered-by-nefed</saml:AttributeValue> + </saml:Attribute> + <saml:Attribute Name="http://shibboleth.net/ns/attributes/releaseAllValues" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>unNUID</saml:AttributeValue> + </saml:Attribute> + </mdattr:EntityAttributes> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">TIND IR</mdui:DisplayName> + <mdui:Description xml:lang="en">TIND IR</mdui:Description> + <mdui:InformationURL xml:lang="en">https://www.tind.io/ir</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="en">https://www.tind.io/privacy_policy</mdui:PrivacyStatementURL> + <mdui:Logo height="48" width="48" xml:lang="en"></mdui:Logo> + </mdui:UIInfo> + </Extensions> + <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <Extensions> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://sandy.unl.edu/Shibboleth.sso/Login"/> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sandy.unl.edu/Shibboleth.sso/Login" index="1"/> </Extensions> - <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> - <Extensions> - <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://unl.tind.io/Shibboleth.sso/Login"/> - <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unl.tind.io/Shibboleth.sso/Login" index="1"/> - </Extensions> - <KeyDescriptor use="signing"> - <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> - <ds:KeyName>tind-customer-unl</ds:KeyName> - <ds:X509Data> - <ds:X509SubjectName>CN=tind-customer-unl</ds:X509SubjectName> - <ds:X509Certificate>MIIEBTCCAm2gAwIBAgIUSXat6+aMiYxMZcExgNkV1/3EBUQwDQYJKoZIhvcNAQEL BQAwHDEaMBgGA1UEAxMRdGluZC1jdXN0b21lci11bmwwHhcNMjQxMDEwMjIxMTE5 WhcNMzQxMDA4MjIxMTE5WjAcMRowGAYDVQQDExF0aW5kLWN1c3RvbWVyLXVubDCC AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKtsA9b215GTt39cJIxisLKn 74PVMyb2TzPV6tTuWXbOyRrlanwntptExLBh3G0xqoyhbAwUBOARcnpznr+HWmHh y6/VruB/0QJWML2ymarH5rZKD5YZrXPcpcbIFehsSTstZu9lOB130kN43CM+lA7m Na69p7AgpIN8TZkw9KgdvAG4pWwE1/we3770Vs3OsI6oljcbnH17+TRPr/i2SeOE kaXv1I0UszXbADeZdJM/7bnmGDfZNdZv9xsaDaqSBH3Sq0ZcfNAzsK77It4hKebp zZ3izvKdJefI3c3ujcp/TETTgepPR8sDF/8E96ZdeX/w7EkxjQXxxYI1+Jj/fqzJ NUPCOz/Rl+SBdL+/yguHyRvy+Gr2qmnl5ws5Vb+QIfL9lfUKWx3YkfcP+G501nYc cFoE9vari1YxAT6JprV7PKHpL/TQqArDqvWDSnKKpjbMBZmSyKvmu96mj8yKpo0V /5+ZFYbBaNBY5BcT5Mf/qY4Mho+rI+r57M4OtzbolwIDAQABoz8wPTAcBgNVHREE FTATghF0aW5kLWN1c3RvbWVyLXVubDAdBgNVHQ4EFgQU94soBr6nNryZt5Fywq/L zchB3MkwDQYJKoZIhvcNAQELBQADggGBAGL9dDvIUDlQQlaqJ1uR3EXjZc7131Bc wU918ZHc6jZXgjrDBcdLAUCPWWVgf+0FEuSTh4+oIwkUWMs+JGurdFU0le6hPZwi C/h5ChrYSNPqDT53GhH9l4gK412TsXozAUiMnkXZrI1rlZoCO5rvApq/rPzDrHTq VwG73tbGBKNeCjA6cndAWbl1nz8uk60SC2LgQZFiDczPZn3uz5KcTcpcuIIT7caD hhz4w0pfZC/mt59Bx1Ir2YM4uTbLGm98GvTtk2gXLKUUlE4t3B9qTw54A9mgsuxU v9FHj0Vb4xk/Zibqw1AtUvmSPUphHx0wfYcLaqdvfceEFKNzoEjQvW4hpaYImCSA 3DVmbyHvJy6OocA/b7hriExTRydoLHUZrwb33xqeboz8Fsmq0AGliTRr9R6FkolV nfxJBWeDsc4i/UBp18Z6x77FKFe411MZyIaAc8Q+6k4wa0fxQeojjCzFlirl1X+9 8PJKXkbdsXmH/TP5mF1M5f0urS2toexNig== - </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </KeyDescriptor> - <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://unl.tind.io/Shibboleth.sso/Artifact/SOAP" index="1"/> - <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://unl.tind.io/Shibboleth.sso/SLO/SOAP"/> - <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://unl.tind.io/Shibboleth.sso/SLO/Redirect"/> - <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unl.tind.io/Shibboleth.sso/SLO/POST"/> - <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unl.tind.io/Shibboleth.sso/SLO/Artifact"/> - <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unl.tind.io/Shibboleth.sso/SAML2/POST" index="1"/> - <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unl.tind.io/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/> - <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unl.tind.io/Shibboleth.sso/SAML2/Artifact" index="3"/> - <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://unl.tind.io/Shibboleth.sso/SAML2/ECP" index="4"/> - </SPSSODescriptor> - <Organization> - <OrganizationName xml:lang="en-US">PrinterLogic</OrganizationName> - <OrganizationDisplayName xml:lang="en-US">PrinterLogic</OrganizationDisplayName> - <OrganizationURL xml:lang="en-US">https://printerlogic.com/</OrganizationURL> - </Organization> - <ContactPerson contactType="technical"> - <GivenName>Michael Litwa</GivenName> - <EmailAddress>michael.litwa@unl.edu</EmailAddress> - </ContactPerson> - <ContactPerson contactType="support"> - <GivenName>Stacy Rickel</GivenName> - <EmailAddress>stacy.rickel@unl.edu</EmailAddress> - </ContactPerson> - <ContactPerson contactType="administrative"> - <GivenName>Michael Litwa</GivenName> - <EmailAddress>michael.litwa@unl.edu</EmailAddress> - </ContactPerson> - <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> - <GivenName>ITS Security</GivenName> - <EmailAddress>security@nebraska.edu</EmailAddress> - </ContactPerson> + <KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>tind-customer-unl</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=tind-customer-unl</ds:X509SubjectName> + <ds:X509Certificate>MIIEBTCCAm2gAwIBAgIUSXat6+aMiYxMZcExgNkV1/3EBUQwDQYJKoZIhvcNAQEL BQAwHDEaMBgGA1UEAxMRdGluZC1jdXN0b21lci11bmwwHhcNMjQxMDEwMjIxMTE5 WhcNMzQxMDA4MjIxMTE5WjAcMRowGAYDVQQDExF0aW5kLWN1c3RvbWVyLXVubDCC AaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKtsA9b215GTt39cJIxisLKn 74PVMyb2TzPV6tTuWXbOyRrlanwntptExLBh3G0xqoyhbAwUBOARcnpznr+HWmHh y6/VruB/0QJWML2ymarH5rZKD5YZrXPcpcbIFehsSTstZu9lOB130kN43CM+lA7m Na69p7AgpIN8TZkw9KgdvAG4pWwE1/we3770Vs3OsI6oljcbnH17+TRPr/i2SeOE kaXv1I0UszXbADeZdJM/7bnmGDfZNdZv9xsaDaqSBH3Sq0ZcfNAzsK77It4hKebp zZ3izvKdJefI3c3ujcp/TETTgepPR8sDF/8E96ZdeX/w7EkxjQXxxYI1+Jj/fqzJ NUPCOz/Rl+SBdL+/yguHyRvy+Gr2qmnl5ws5Vb+QIfL9lfUKWx3YkfcP+G501nYc cFoE9vari1YxAT6JprV7PKHpL/TQqArDqvWDSnKKpjbMBZmSyKvmu96mj8yKpo0V /5+ZFYbBaNBY5BcT5Mf/qY4Mho+rI+r57M4OtzbolwIDAQABoz8wPTAcBgNVHREE FTATghF0aW5kLWN1c3RvbWVyLXVubDAdBgNVHQ4EFgQU94soBr6nNryZt5Fywq/L zchB3MkwDQYJKoZIhvcNAQELBQADggGBAGL9dDvIUDlQQlaqJ1uR3EXjZc7131Bc wU918ZHc6jZXgjrDBcdLAUCPWWVgf+0FEuSTh4+oIwkUWMs+JGurdFU0le6hPZwi C/h5ChrYSNPqDT53GhH9l4gK412TsXozAUiMnkXZrI1rlZoCO5rvApq/rPzDrHTq VwG73tbGBKNeCjA6cndAWbl1nz8uk60SC2LgQZFiDczPZn3uz5KcTcpcuIIT7caD hhz4w0pfZC/mt59Bx1Ir2YM4uTbLGm98GvTtk2gXLKUUlE4t3B9qTw54A9mgsuxU v9FHj0Vb4xk/Zibqw1AtUvmSPUphHx0wfYcLaqdvfceEFKNzoEjQvW4hpaYImCSA 3DVmbyHvJy6OocA/b7hriExTRydoLHUZrwb33xqeboz8Fsmq0AGliTRr9R6FkolV nfxJBWeDsc4i/UBp18Z6x77FKFe411MZyIaAc8Q+6k4wa0fxQeojjCzFlirl1X+9 8PJKXkbdsXmH/TP5mF1M5f0urS2toexNig== + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sandy.unl.edu/Shibboleth.sso/Artifact/SOAP" index="1"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sandy.unl.edu/Shibboleth.sso/SLO/SOAP"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sandy.unl.edu/Shibboleth.sso/SLO/Redirect"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sandy.unl.edu/Shibboleth.sso/SLO/POST"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sandy.unl.edu/Shibboleth.sso/SLO/Artifact"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sandy.unl.edu/Shibboleth.sso/SAML2/POST" index="1"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sandy.unl.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sandy.unl.edu/Shibboleth.sso/SAML2/Artifact" index="3"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sandy.unl.edu/Shibboleth.sso/SAML2/ECP" index="4"/> + </SPSSODescriptor> + <Organization> + <OrganizationName xml:lang="en-US">TIND</OrganizationName> + <OrganizationDisplayName xml:lang="en-US">TIND</OrganizationDisplayName> + <OrganizationURL xml:lang="en-US">https://www.tind.io/</OrganizationURL> + </Organization> + <ContactPerson contactType="technical"> + <GivenName>Michael Litwa</GivenName> + <EmailAddress>michael.litwa@unl.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="support"> + <GivenName>Stacy Rickel</GivenName> + <EmailAddress>stacy.rickel@unl.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="administrative"> + <GivenName>Michael Litwa</GivenName> + <EmailAddress>michael.litwa@unl.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <GivenName>ITS Security</GivenName> + <EmailAddress>security@nebraska.edu</EmailAddress> + </ContactPerson> </EntityDescriptor> <EntityDescriptor entityID="https://nebraska.smapply.us/saml2/metadata/">