From 87d2ff7264be2ea435037056c31c40b388e91c21 Mon Sep 17 00:00:00 2001
From: Rory Larson <rarson1@unl.edu>
Date: Tue, 4 Apr 2023 16:18:03 -0500
Subject: [PATCH] Adding Ariba to nefed with edits removing extra Extensions
 and adding stuff at top.

---
 nefed.xml | 45 ++++++++++++++++++++-------------------------
 1 file changed, 20 insertions(+), 25 deletions(-)

diff --git a/nefed.xml b/nefed.xml
index cec578c..8103765 100644
--- a/nefed.xml
+++ b/nefed.xml
@@ -27905,6 +27905,26 @@
 </EntityDescriptor>
 <EntityDescriptor entityID="http://nusystemchildsite-1-T.procurement3.ariba.com" urn:name="Ariba-Buyer" urn:LogLevel="STANDARD" urn:isActive="true" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:urn="urn:sourceid.org:saml2:metadata-extension:v2">
   <Extensions>
+      <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" />
+    <mdattr:EntityAttributes>
+        <saml:Attribute Name="http://macedir.org/entity-category"
+            NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+            <saml:AttributeValue>
+                https://nebraska.edu/category/registered-by-nefed</saml:AttributeValue>
+        </saml:Attribute>
+        <saml:Attribute Name="http://shibboleth.net/ns/attributes/releaseAllValues"
+            NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+            <saml:AttributeValue>
+                unNUID</saml:AttributeValue>
+        </saml:Attribute>
+    </mdattr:EntityAttributes>
+    <mdui:UIInfo>
+        <mdui:DisplayName xml:lang="en">Ariba</mdui:DisplayName>
+        <mdui:Description xml:lang="en">Ariba</mdui:Description>
+        <mdui:InformationURL xml:lang="en">https://www.sap.com/about/company.html</mdui:InformationURL>
+        <mdui:PrivacyStatementURL xml:lang="en">
+            https://www.sap.com/about/trust-center.html</mdui:PrivacyStatementURL>
+    </mdui:UIInfo>
     <urn:EntityExtension LicenseGroup="" PFVersion="6.10.0.4">
       <urn:DigitialSignatureAliases includeX509inXmlSig="false"/>
       <urn:Encryption>
@@ -27926,31 +27946,6 @@
     </urn:EntityExtension>
   </Extensions>
   <SPSSODescriptor WantAssertionsSigned="true" AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
-    <Extensions>
-      <urn:RoleExtension ArtifactTimeoutSeconds="60">
-        <urn:IncomingBindings SOAP="false" Redirect="true" POST="true" Artifact="false"/>
-        <urn:EnabledProfiles SPInitiatedSLO="false" SPInitiatedSSO="true" IDPInitiatedSLO="false" IDPInitiatedSSO="true"/>
-        <urn:SP ConnectionTargetType="Standard" AssertionValidityBeforeMinutes="5" AssertionValidityAfterMinutes="5">
-          <urn:AdapterToAssertionMapping AdapterInstanceId="Composite" AbortIfNotFoundInAnyDataSources="false">
-            <urn:DefaultAttributeMapping>
-              <urn:AttributeMap Value="mail" AttributeSourceId="CUSTOM-LDAP" Type="LDAP" Name="SAML_SUBJECT"/>
-              <urn:AttributeSource DataSourceId="LDAP-5C14D8F805F301B74FF88CB1D36E1C1ACEAD216D" Type="LDAP" Description="LDAPMail" Id="LDAP">
-                <urn:Parameter Value="SUBTREE_SCOPE" Name="search_scope"/>
-                <urn:Parameter Value="DC=CUSTOM,DC=Com" Name="search_base"/>
-                <urn:Parameter Value="sAMAccountName=${Username}" Name="filter"/>
-              </urn:AttributeSource>
-              <urn:AttributeSource DataSourceId="LDAP-5C14D8F805F301B74FF88CB1D36E1C1ACEAD216D" Type="LDAP" Description="SDLDAPMail" Id="SDLDAP">
-                <urn:Parameter Value="SUBTREE_SCOPE" Name="search_scope"/>
-                <urn:Parameter Value="DC=SDCUSTOM,DC=CUSTOM,DC=Com" Name="search_base"/>
-                <urn:Parameter Value="sAMAccountName=${Username}" Name="filter"/>
-              </urn:AttributeSource>
-              <urn:TokenAuthorizationIssuanceCriteria/>
-            </urn:DefaultAttributeMapping>
-          </urn:AdapterToAssertionMapping>
-          <urn:NameIdentifierMappingType IncludeAdditionalTransientAttributes="false" IncludeAdditionalAttributes="false"/>
-        </urn:SP>
-      </urn:RoleExtension>
-    </Extensions>
     <KeyDescriptor use="signing">
         <ds:KeyInfo>
             <ds:X509Data>
-- 
GitLab