diff --git a/nefed.xml b/nefed.xml index a6de4af5acc77bcb4ade017cef4b6f2794f5d00d..292b0eec9422faf028ef11f4b1d9490e87611425 100644 --- a/nefed.xml +++ b/nefed.xml @@ -30222,4 +30222,100 @@ and do *NOT* provide it in real time to your partners. security@nebraska.edu</EmailAddress> </ContactPerson> </EntityDescriptor> + <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_504cbbd547266c4c1ed57129919b2b29b5c3fb27" entityID="https://its-hsapq.nebraska.edu"> + <Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" /> + <mdattr:EntityAttributes> + <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>https://nebraska.edu/category/registered-by-nefed</saml:AttributeValue> + </saml:Attribute> + <saml:Attribute Name="http://shibboleth.net/ns/attributes/releaseAllValues" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>unNUID</saml:AttributeValue> + </saml:Attribute> + </mdattr:EntityAttributes> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">UNHS QA FrontOffice</mdui:DisplayName> + <mdui:Description xml:lang="en">UNHS QA FrontOffice</mdui:Description> + <mdui:InformationURL xml:lang="en">https://highschool.nebraska.edu/about</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="en">https://nebraska.edu/privacy-statement</mdui:PrivacyStatementURL> + <mdui:Logo height="85" width="141" xml:lang="en"></mdui:Logo> + </mdui:UIInfo> + </Extensions> + <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <Extensions> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/Login"/> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/Login" index="1"/> + </Extensions> + <KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>its-hsapq.uncsdom.uneb.edu</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=its-hsapq.uncsdom.uneb.edu</ds:X509SubjectName> + <ds:X509Certificate>MIIEIDCCAoigAwIBAgIUcFJjEQOH4/BxB96xaiY5VsxeQFwwDQYJKoZIhvcNAQEL BQAwJTEjMCEGA1UEAxMaaXRzLWhzYXBxLnVuY3Nkb20udW5lYi5lZHUwHhcNMjMw ODA4MTkyNDMzWhcNMzMwODA1MTkyNDMzWjAlMSMwIQYDVQQDExppdHMtaHNhcHEu dW5jc2RvbS51bmViLmVkdTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGB AJbSQkZ8N4rE2sne0cnrdUR89mxHxi+M+EYwdWRCK+F/XTqCVc2SvmoJrgAfEXzE wGb22EDuXG97ZidgWk1Ira7KMGK9EUfkRkWEH5N1lPqq/rDuy9XA9Xo6IIzsfWfk NOyzmc4Y4Iub4+VAl80PZe6ns+7bJGttjL/FKlgQLu7N9n90XDKHYceM85NGckWJ nDrQVjWk7F/IQviLAvsIAFpgfr3l9plu8Hc6lcB6XX2GWv57kYGdsz6NUa9bm0nt Fn0hDfBk9ZVCTO20fFQWrclwAaYnk+FvFjMQcd0PH4VcTTLjNLJ+aFUB4JmHNOvS Hpnh0N4HTaSbSDBR6GRxTtYAKuoUA4Xq3xLTeLs6T/TTM6hhL86FtOaYGQZEg03s TYMBVoLdO4iOFVNX+3ftw9GegoQEPnto7c78l6zoQLBr8U/8Ya1Fj5WQRRRgQ5Bz FGzvgbWVuQxCXw1pecjtXpCcrxQdJ+rXVJunRvOkPWXZ0WlQuxcSbZay0emtjaSB uQIDAQABo0gwRjAlBgNVHREEHjAcghppdHMtaHNhcHEudW5jc2RvbS51bmViLmVk dTAdBgNVHQ4EFgQUTb179xi6xjEhNaCz8GzOEG9Kz8QwDQYJKoZIhvcNAQELBQAD ggGBAClD4ZEj7oat/IOX+Ge6zH2UN2IDOHRjs9ZAnECsayrqPCshG38IXT6kwMQq SNPcBhWB1F9rIJQSAI4LX44fD0EtFaISvmChn78rJo51S50RWcpWWEaOjqzYtr7M 5WAHjJ2kySaAbIC1Wii02hYLPaXc+X3iHfYLSGt+zdb6UszFxbW0O7YYoPyuxXAc EFS3qRHnw2Qyl3MhqkJcwZuNd1SqaKDvpvqrZW5XGsqkzmexpUh9icl+6V4pnX9x Id9MRLQhxgw+YxXCCQMNQwNluio+mG+ccDtgt2OnYU10hiKmiCIFBDYPqEvygpBK Xa/HGbc9fjvNRKmc/RZJQ99JNg9AfpYED/e5XJSoFDEep/VmREGfCP2e3LHpRTPI CtxW7qdUIJBtOeENW6vHb5qbOQ0u3ghZKQZoTy9s1kj1GCxM85OodngNWu2zPXUy /5q/c5qjP+XzY5X7PGvYdmIjZSB2Bl0VIHZSHmkVvMNPBeRsAiqV/bRk0I4aKQBB FsLvmw== + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <KeyDescriptor use="encryption"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>its-hsapq.uncsdom.uneb.edu</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=its-hsapq.uncsdom.uneb.edu</ds:X509SubjectName> + <ds:X509Certificate>MIIEIDCCAoigAwIBAgIUC88t6aRNCCQUAjMox+8Iwtq4etIwDQYJKoZIhvcNAQEL BQAwJTEjMCEGA1UEAxMaaXRzLWhzYXBxLnVuY3Nkb20udW5lYi5lZHUwHhcNMjMw ODA4MTkyNDI5WhcNMzMwODA1MTkyNDI5WjAlMSMwIQYDVQQDExppdHMtaHNhcHEu dW5jc2RvbS51bmViLmVkdTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGB AI8msz8bYQ9KNNePKAzx3ZEvdzS0t6e3ZJlp5FsEfcWIyk7rTqxtzFo14lw8SqaL kOKzVLPcyfzUfLkP8KppLjF9TVMtEjJSTGEEtu7EJCVkkePBC4o1njtk+IuuxP+q gDHXR5dQujQzD5VZq8xhka/wE+tnkjuBSMAXkSsx9NbvD3sb5tZBuZ/Q3oXZCCzO Y6lgKl5g5hSbe/+JKr7BV2kT3rnO00Pl4R8wp2WnqR5wCa0XkjXA+A1QcPuEUZ2W sFWbkGYRqozFpipONRBnDdyjqgNHaglK0b0aE8pSBhdQPEPmKB4lKAr9rgOtZecP 6c0SJEGdWBFj7d60hvri6uCzMLWNlp3yHDokxlCjCZ4EyxjLwcqt0xOq3AYfeSsV swPk/GU8D/k8FrNwaLPVGy1o73tCD2THTeXdLOKYrnmPyPS2VHR1oqyhPw3guWyC lJfx4cxy5sGy98TICs/2jOFAo68WUD7MpmnZWXckB3pSUOgV7Z/R53sWBkDWhEsB bwIDAQABo0gwRjAlBgNVHREEHjAcghppdHMtaHNhcHEudW5jc2RvbS51bmViLmVk dTAdBgNVHQ4EFgQUskcnUJRNOy02xuwB8jiJEioPnPcwDQYJKoZIhvcNAQELBQAD ggGBADWzDNrIuoy2xptTL5+5xF4Tk6rfpPUrlIX32V/UYNMMNEeES1fH4QvvCeJe Mwz/tsK1lEwHiDHKklqCMGN/JucXZdffkU0zqkzofvko5+ig1cu19AFS8VzgxsJR u6jTUUViNv2t53EDdWSEkJE5uBU9hTjp0knVxtfcBEdnYriGB70ruYx+u5ZsCF2f NinZ7DHVT4tYcOP2YuK11RkKVb0hFZgAq1mKNbDZtmoxkPzTD7WqMySskJxqrAtZ PNYrwSoM8NCXFc7pX/vK6Kz+uWRGCu1HOKhBXELHC87cSCnnhvTywxCzptbKCg2a 40Uw6HQI5KczaH613eGRqk09/IjMvQWA2M6irOyige8FBywghvGu8EzSFlsZGLvT nMv6TB5TIyqi5QS2jNSubkO2w19mhZ51FZvYh6rVIO/jbkggAkVY+0Te6Ree82iM Onxu6x/aawzEHFh3VmvNoLvgutHisqUSrchuCNzUJzMStRhrq4VXRnGH27Je2oCV 8DvgNA== + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> + </KeyDescriptor> + <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/Artifact/SOAP" index="1"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/SLO/SOAP"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/SLO/Redirect"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/SLO/POST"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/SLO/Artifact"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/SAML2/POST" index="1"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/SAML2/Artifact" index="3"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://qafrontoffice.nebraska.edu/Shibboleth.sso/SAML2/ECP" index="4"/> + </SPSSODescriptor> + <ContactPerson contactType="technical"> + <GivenName>Web Application and Accessibility Team</GivenName> + <EmailAddress>webmaster@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="administrative"> + <GivenName>Web Application and Accessibility Team</GivenName> + <EmailAddress>webmaster@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="support"> + <GivenName>Web Application and Accessibility Team</GivenName> + <EmailAddress>webmaster@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <GivenName>ITS Security</GivenName> + <EmailAddress>security@nebraska.edu</EmailAddress> + </ContactPerson> + </EntityDescriptor> </EntitiesDescriptor>