diff --git a/nefed.xml b/nefed.xml index cbeec5fe09992067c338301b423f601ca55ba1c4..f5debe28cf3aee0ea5a25615bab995a503ba464f 100644 --- a/nefed.xml +++ b/nefed.xml @@ -12272,74 +12272,7 @@ KNGked4df0r1o5CozJ35FjKx1fiYucuvGXU+UZd5Yg6sF6MRhQqud32X3eOFJXS/ndm/jGit7B6A <EmailAddress>security@nebraska.edu</EmailAddress> </ContactPerson> </EntityDescriptor> - <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://nucontact.nebraska.edu"> - <Extensions> - <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" /> - <mdattr:EntityAttributes> - <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> - <saml:AttributeValue>https://nebraska.edu/category/registered-by-nefed</saml:AttributeValue> - </saml:Attribute> - </mdattr:EntityAttributes> - <mdui:UIInfo> - <mdui:DisplayName xml:lang="en">NUContact</mdui:DisplayName> - <mdui:Description xml:lang="en">CRM and event management application used by University of Nebraska External Relations Office at Varner Hall.</mdui:Description> - <mdui:InformationURL xml:lang="en">https://nucontact.nebraska.edu</mdui:InformationURL> - <mdui:PrivacyStatementURL xml:lang="en">https://its.nebraska.edu/policies-processes/idm-privacy-policy</mdui:PrivacyStatementURL> - <mdui:Logo height="48" width="48" xml:lang="en">https://nucontact.nebraska.edu/images/nucontact.gif</mdui:Logo> - </mdui:UIInfo> - </Extensions> - <SPSSODescriptor AuthnRequestsSigned="false" WantAssertionsSigned="false" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> - <KeyDescriptor> - <ds:KeyInfo> - <ds:X509Data> - <ds:X509Certificate> - MIICjDCCAfWgAwIBAgIBADANBgkqhkiG9w0BAQ0FADBiMQswCQYDVQQGEwJ1czER - MA8GA1UECAwITmVicmFza2ExHzAdBgNVBAoMFlVuaXZlcnNpdHkgb2YgTmVicmFz - a2ExHzAdBgNVBAMMFm51Y29udGFjdC5uZWJyYXNrYS5lZHUwIBcNMjEwMjIyMTcx - ODA4WhgPMjA1MTAyMTUxNzE4MDhaMGIxCzAJBgNVBAYTAnVzMREwDwYDVQQIDAhO - ZWJyYXNrYTEfMB0GA1UECgwWVW5pdmVyc2l0eSBvZiBOZWJyYXNrYTEfMB0GA1UE - AwwWbnVjb250YWN0Lm5lYnJhc2thLmVkdTCBnzANBgkqhkiG9w0BAQEFAAOBjQAw - gYkCgYEA0t6n1rLZpyWoJQh6RSthsMMJ5aZXpkM5NI9re7HXUqiTr+OGlMjCf0ux - VTlJhdCtMdtdaiFEOSIUNWxKr26VMvDfyj4wHcva6WTneWFb3mJsiVDJatTZygCB - lgJ7UbMdMnNd9TEIyM5I84K8Wee/hlMd0ep6SqkDy1/SjX3oZMsCAwEAAaNQME4w - HQYDVR0OBBYEFHjNtZABs2LR4xlCNDD9nbgeB6nvMB8GA1UdIwQYMBaAFHjNtZAB - s2LR4xlCNDD9nbgeB6nvMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQENBQADgYEA - L3IabD/6cOd0AaCFJIvcirW9TX8mIg6gJmTbZpE5fFxE4p0KlkHfOoMUPkXutkgv - 4Hbrfo1B2nkK7IIt9d2mawSMH0iO4EF2AlUu6HCuutdABpDndKSIEuJbXpoAmJch - WJJ+odfIkpbva+vdyNIgjoI1yYNN02p2WZk/3l2VNTc= - </ds:X509Certificate> - </ds:X509Data> - </ds:KeyInfo> - </KeyDescriptor> - <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nucontact.nebraska.edu/account/saml/logout" /> - <NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified</NameIDFormat> - <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devnucontact.nebraska.edu/account/saml/login" index="1" /> - <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://qanucontact.nebraska.edu/account/saml/login" index="2" /> - <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nucontact.nebraska.edu/account/saml/login" index="3" /> - </SPSSODescriptor> - <Organization> - <OrganizationName xml:lang="en-US">NUContact</OrganizationName> - <OrganizationDisplayName xml:lang="en-US">NUContact</OrganizationDisplayName> - <OrganizationURL xml:lang="en-US">https://nucontact.nebraska.edu</OrganizationURL> - </Organization> - <ContactPerson contactType="administrative"> - <GivenName>NeDDS Team</GivenName> - <EmailAddress>webmaster@nebraska.edu</EmailAddress> - </ContactPerson> - <ContactPerson contactType="support"> - <GivenName>NeDDS Team</GivenName> - <EmailAddress>webmaster@nebraska.edu</EmailAddress> - </ContactPerson> - <ContactPerson contactType="technical"> - <GivenName>NeDDS Team</GivenName> - <EmailAddress>webmaster@nebraska.edu</EmailAddress> - </ContactPerson> - <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> - <GivenName>ITS Security</GivenName> - <EmailAddress>security@nebraska.edu</EmailAddress> - </ContactPerson> - </EntityDescriptor> - <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://uncsccmgrt.nebraska.edu:34544/"> + <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://uncsccmgrt.nebraska.edu:34544/"> <Extensions> <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" /> <mdattr:EntityAttributes> @@ -12392,4 +12325,107 @@ KNGked4df0r1o5CozJ35FjKx1fiYucuvGXU+UZd5Yg6sF6MRhQqud32X3eOFJXS/ndm/jGit7B6A <EmailAddress>security@nebraska.edu</EmailAddress> </ContactPerson> </EntityDescriptor> + <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_de148dabff0370b3c8a8369f764cec029e572c24" entityID="https://nedds-sso.nebraska.edu"> + + <Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/> + <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" /> + <mdattr:EntityAttributes> + <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>https://nebraska.edu/category/registered-by-nefed</saml:AttributeValue> + </saml:Attribute> + <saml:Attribute Name="http://shibboleth.net/ns/attributes/releaseAllValues" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>unNUID</saml:AttributeValue> + </saml:Attribute> + </mdattr:EntityAttributes> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">NUContact</mdui:DisplayName> + <mdui:Description xml:lang="en">CRM and event management application used by University of Nebraska External Relations Office at Varner Hall.</mdui:Description> + <mdui:InformationURL xml:lang="en">https://nucontact.nebraska.edu</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="en">https://its.nebraska.edu/policies-processes/idm-privacy-policy</mdui:PrivacyStatementURL> + <mdui:Logo height="48" width="48" xml:lang="en">https://nucontact.nebraska.edu/images/nucontact.gif</mdui:Logo> + </mdui:UIInfo> + </Extensions> + + <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <Extensions> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/Login"/> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/Login" index="1"/> + </Extensions> + <KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>its-webapd.uncsdom.uneb.edu</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=its-webapd.uncsdom.uneb.edu</ds:X509SubjectName> + <ds:X509Certificate>MIIEIzCCAougAwIBAgIURGm4qwFZ1I5SWZfXpIijxo10HfMwDQYJKoZIhvcNAQEL BQAwJjEkMCIGA1UEAxMbaXRzLXdlYmFwZC51bmNzZG9tLnVuZWIuZWR1MB4XDTIx MDMxMDE0MzIwOVoXDTMxMDMwODE0MzIwOVowJjEkMCIGA1UEAxMbaXRzLXdlYmFw ZC51bmNzZG9tLnVuZWIuZWR1MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKC AYEAxLoqiPY8SchbfMsP4BAXRRPOt7s1ubFY7d3YXPyvn/B0W01MjawFArl4m+43 C1DxGstfB3BpjUXrgA763YmNnIskQ+U6c8o2OGcU0hVaGL4duBvRC2wvtAUzlTVG EnlONs72e8C4AtkVqy+1BjxxGsoluiWWBKTKHfcXgRnCfxLNTTrDq0mHiauw4CeU J9jY26zxWaUPcSWSNuW/5gI4GTp7Guo0/0f2LS7gdgygt1Ez86mJvmHcetr/dJaE skho9xTfCxcpZkYjOaA0KZkjdelHKFoIRuZRD1Lg8JQihG9OdqFEzK3tF9V57oXW ijyMtxj/exIKi6YCBnswYDVPL1FN2IPlWlBoe4FA6NeHCWGVzeTYdYd9PgM8gfUk EVz/8cF1kxfUpe8EraF+ac/oKoI++QFaZU8H7i15nCRlGJAgVx1eQVDsRZdwDvyl HaWTdTISXAHNJ12d+s8o+qZNiEdC0TLzCN9Rktfwkg+R5S2WzsftUReq2PB8T7HY HOUXAgMBAAGjSTBHMCYGA1UdEQQfMB2CG2l0cy13ZWJhcGQudW5jc2RvbS51bmVi LmVkdTAdBgNVHQ4EFgQUN2Fxy+mgoM5aynwYe0PnhNMAmf4wDQYJKoZIhvcNAQEL BQADggGBALsMktuFkLL4wJCxQR/sviZxH4NPxqIxp9YlhG7QzrQR8rGaC1aqOYWh rrdVpKXkrkIbsICkrYo8LO59q7xJWx4XWz5uG9H6btf0GzdUMVOHe+/g9/Df7nMg XWVd1Z3jW/TO3Jz/ygC4PsC+pW9nrWMOIdZl1N6w9opDbtdkHEfkkp5erbP4Ry5c aS0HeuBxwou321I+LyBAaMu6qa3Dtfkc+r4fp4NaiXlSDVpTW284akbmFMD23kiY zP1VTOuOl5vxJPShTHe/B6262hZBSXXy5Y8ZIYWIDd4NP9NwrVavfc0EDJUsQDJK 6JxQYRXIEHnhLv7Xr8oh3Knx4Lc7oZrF+71sb6saUuOXEZWrt0CCYPNRXU7MY1+E oDah+JaRmGUvNbyltlSGkZo7gUbvFvDVeMZLQP9EHrtbA3uVg9ZEy9pc3DSsCJav 03QknPF8rCzOH1J20iCVRzS54t031Yk2B46VhdLz32Q3lZLv9djnZNT5nnTlPkcL 5M0UAvTj/A== + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <KeyDescriptor use="encryption"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>its-webapd.uncsdom.uneb.edu</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=its-webapd.uncsdom.uneb.edu</ds:X509SubjectName> + <ds:X509Certificate>MIIEIzCCAougAwIBAgIUCGpthijrEz65omIYxeZ3rZiUQnIwDQYJKoZIhvcNAQEL BQAwJjEkMCIGA1UEAxMbaXRzLXdlYmFwZC51bmNzZG9tLnVuZWIuZWR1MB4XDTIx MDMxMDE0MzIwOFoXDTMxMDMwODE0MzIwOFowJjEkMCIGA1UEAxMbaXRzLXdlYmFw ZC51bmNzZG9tLnVuZWIuZWR1MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKC AYEAu/ssj63N6z3eLbFCvDBzzRiiFCgkUFjhQVFnClj6pUsxWJrNnY/DXLNJKAeM IMw3wA0M3MtTM/FwLNFJzTa4PwP5vOVwIpzeVtcKwZuXexw2jS7PuamqDXbt6mUe eQHcZlIpZ6KeJdDkSRpGcQyLS9wn5S+MF0ODM0GMuJeMbjMA36GehFryYX70Vr9V 0g38PISoKrJ+dOY6OnitZH5f/XKI/E+Sgswb93F30zLOUI2xTHdtRx9qv07P5bFV nVIpzAxwXNLwEU6qHWGwixIWsRrH0kxIi8+s+Nv/xpchBeG/gObJ3QfcSSlGqtyE Eo1iT3re99m/58Hq4WLG99g0ZTnvfpYQP04uwBxGrwKKLCYz/uLA2+CZvr6xeqUo jV4Gc7K2rfReDawjtjS1bCGOqH+q+Xw8wQzsSjD1sPs9RWkilKj8jToRWTL/7m5D 3cKU5T3W//8cc5h9lJ1Ft7Spdbf3wLrAvQ1uqGM5ztYyuPyDTXr0Rct8RYIkFa+M 8v9bAgMBAAGjSTBHMCYGA1UdEQQfMB2CG2l0cy13ZWJhcGQudW5jc2RvbS51bmVi LmVkdTAdBgNVHQ4EFgQUJbQ+QQPW+r9C0eK0Owdi9pZpgCYwDQYJKoZIhvcNAQEL BQADggGBAE4TTPwqAa8JS6X5YAi7QKixamU4o95VYWD7E81q1hnzh/P8PM2ySFnc 1Lh3fY8n7JzZmjoUy0pCppysAAUk5kWWWUDwlsbzyNoTnj6n1dzkpY4MXsrbAIb8 1m5vBO/XasEz+rtQeoj+JO9+H8BOIjEhQ0mGO9d9UCY04G7G9FS0UnUdMe6Rr+MK 7TxxZ+9zjALKKez0Tisl3mLe+F9H9oJPvTNi9xGfqCKvGkcta3bGZjIllkFjUT8Q 9l++phsp2bSmoyPDrtmjw7Jflg1/k6EOa6vAIinJvMC0/R0J4LcKJyqYyG9iQPG3 jpVIQuxgdvGLTkdanuL6y3FcRu8AQ4j/JfpDB0DilIYHHvpQgk5hwr3GPAVn/AzP mrxhJv82lxApHH82o6/3bm+8JVTQkjJm9nplk8GA1Exv+Tb2KlCQuU4DL8NCmIvF bAZecOP1QmZGWxEf35sfgE89X0eGdADcz8vusPQ+NTB6JOaWlyXJXhNykQD+eojP PobHqo8SbA== + </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/> + </KeyDescriptor> + <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/Artifact/SOAP" index="1"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/SLO/SOAP"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/SLO/Redirect"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/SLO/POST"/> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/SLO/Artifact"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/SAML2/POST" index="1"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/SAML2/Artifact" index="3"/> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://devnucontact.nebraska.edu/Shibboleth.sso/SAML2/ECP" index="4"/> + </SPSSODescriptor> + <Organization> + <OrganizationName xml:lang="en-US">NUContact</OrganizationName> + <OrganizationDisplayName xml:lang="en-US">NUContact</OrganizationDisplayName> + <OrganizationURL xml:lang="en-US">https://nucontact.nebraska.edu</OrganizationURL> + </Organization> + <ContactPerson contactType="administrative"> + <GivenName>NeDDS Team</GivenName> + <EmailAddress>webmaster@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="support"> + <GivenName>NeDDS Team</GivenName> + <EmailAddress>webmaster@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="technical"> + <GivenName>NeDDS Team</GivenName> + <EmailAddress>webmaster@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <GivenName>ITS Security</GivenName> + <EmailAddress>security@nebraska.edu</EmailAddress> + </ContactPerson> + </EntityDescriptor> </EntitiesDescriptor>