From 8e0795097407f6ba9196c0e22fafb5ad93068b65 Mon Sep 17 00:00:00 2001
From: Ryan Rumbaugh <rrumbaugh@nebraska.edu>
Date: Wed, 11 Oct 2023 10:19:35 -0500
Subject: [PATCH] Resolve "Update NUTech Ventures (Wellspring) Certificate"

---
 nefed.xml | 87 ++++++++++++++++++++++++++++++-------------------------
 1 file changed, 47 insertions(+), 40 deletions(-)

diff --git a/nefed.xml b/nefed.xml
index 09aaa01..133b25f 100644
--- a/nefed.xml
+++ b/nefed.xml
@@ -8405,71 +8405,78 @@
                 security@nebraska.edu</EmailAddress>
         </ContactPerson>
     </EntityDescriptor>
-
     <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata"
-        xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/metadata.php/nutech_kms-sp">
+        xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
+        entityID="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/metadata.php/fcf6ea72-7d4d-4559-a75d-41f755e797e2">
         <Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
             <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/iam/lincoln" />
             <mdattr:EntityAttributes>
-                <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
-                    <saml:AttributeValue>
-                        https://nebraska.edu/category/registered-by-lincoln</saml:AttributeValue>
-                </saml:Attribute>
+            <saml:Attribute Name="http://macedir.org/entity-category"
+                NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+                <saml:AttributeValue>
+                https://nebraska.edu/category/registered-by-lincoln</saml:AttributeValue>
+            </saml:Attribute>
+            <saml:Attribute Name="http://shibboleth.net/ns/attributes/releaseAllValues"
+                NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+                <saml:AttributeValue>
+                unNUID</saml:AttributeValue>
+            </saml:Attribute>
             </mdattr:EntityAttributes>
             <mdui:UIInfo>
-                <mdui:DisplayName xml:lang="en">
-                    Wellspring</mdui:DisplayName>
-                <mdui:Description xml:lang="en">Wellspring</mdui:Description>
-                <mdui:InformationURL xml:lang="en">
-                    https://www.wellspring.com/about</mdui:InformationURL>
-                <mdui:PrivacyStatementURL xml:lang="en">
-                    https://www.wellspring.com/privacy-policy</mdui:PrivacyStatementURL>
-                <mdui:Logo height="85" width="141" xml:lang="en"></mdui:Logo>
+            <mdui:DisplayName xml:lang="en">
+                Wellspring</mdui:DisplayName>
+            <mdui:Description xml:lang="en">Wellspring</mdui:Description>
+            <mdui:InformationURL xml:lang="en">
+                https://www.wellspring.com/about</mdui:InformationURL>
+            <mdui:PrivacyStatementURL xml:lang="en">
+                https://www.wellspring.com/privacy-policy</mdui:PrivacyStatementURL>
+            <mdui:Logo height="85" width="141" xml:lang="en"></mdui:Logo>
             </mdui:UIInfo>
         </Extensions>
-        <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+        <SPSSODescriptor
+            protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
             <KeyDescriptor use="signing">
-                <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
-                  <ds:X509Data>
-                    <ds:X509Certificate>
-                            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</ds:X509Certificate>
-                    </ds:X509Data>
-                </ds:KeyInfo>
+            <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
+                <ds:X509Data>
+                <ds:X509Certificate>
+                    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</ds:X509Certificate>
+                </ds:X509Data>
+            </ds:KeyInfo>
             </KeyDescriptor>
-              <KeyDescriptor use="encryption">
-                <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
-                  <ds:X509Data>
-                    <ds:X509Certificate>
-                            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</ds:X509Certificate>
-                    </ds:X509Data>
-                </ds:KeyInfo>
+            <KeyDescriptor use="encryption">
+            <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
+                <ds:X509Data>
+                <ds:X509Certificate>
+                    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</ds:X509Certificate>
+                </ds:X509Data>
+            </ds:KeyInfo>
             </KeyDescriptor>
             <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
-                Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml2-logout.php/nutech_kms-sp" />
+            Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml2-logout.php/fcf6ea72-7d4d-4559-a75d-41f755e797e2" />
             <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP"
-                Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml2-logout.php/nutech_kms-sp" />
+            Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml2-logout.php/fcf6ea72-7d4d-4559-a75d-41f755e797e2" />
             <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
-                Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml2-acs.php/nutech_kms-sp"
-                index="0" />
+            Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml2-acs.php/fcf6ea72-7d4d-4559-a75d-41f755e797e2"
+            index="0" />
             <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post"
-                Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml1-acs.php/nutech_kms-sp"
-                index="1" />
+            Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml1-acs.php/fcf6ea72-7d4d-4559-a75d-41f755e797e2"
+            index="1" />
             <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact"
-                Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml2-acs.php/nutech_kms-sp"
-                index="2" />
+            Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml2-acs.php/fcf6ea72-7d4d-4559-a75d-41f755e797e2"
+            index="2" />
             <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01"
-                Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml1-acs.php/nutech_kms-sp/artifact"
-                index="3" />
+            Location="https://nutech.test.wellspringsoftware.net/simplesaml/module.php/saml/sp/saml1-acs.php/fcf6ea72-7d4d-4559-a75d-41f755e797e2/artifact"
+            index="3" />
         </SPSSODescriptor>
         <Organization>
             <OrganizationName xml:lang="en">Wellspring</OrganizationName>
             <OrganizationDisplayName xml:lang="en">Wellspring</OrganizationDisplayName>
             <OrganizationURL xml:lang="en">
-                https://www.wellspring.com/products/technology-transfer</OrganizationURL>
+            https://www.wellspring.com/products/technology-transfer</OrganizationURL>
         </Organization>
         <ContactPerson contactType="technical">
             <GivenName>
-                Tracer</GivenName>
+            Tracer</GivenName>
             <EmailAddress>tracer@wellspring.com</EmailAddress>
         </ContactPerson>
     </EntityDescriptor>
-- 
GitLab