diff --git a/nefed.xml b/nefed.xml index 82879957409c21e01412aad32d5b49e338320518..16d51a72537997774ae3c6b4a375418932bd0d47 100644 --- a/nefed.xml +++ b/nefed.xml @@ -16350,4 +16350,94 @@ KNGked4df0r1o5CozJ35FjKx1fiYucuvGXU+UZd5Yg6sF6MRhQqud32X3eOFJXS/ndm/jGit7B6A <EmailAddress>security@nebraska.edu</EmailAddress> </ContactPerson> </EntityDescriptor> + <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_b3ddbd524f5f915084cdba1136808c80923a2f7d" entityID="https://unomaha-dev.cascadecms.com/shibboleth"> + <Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1" /> + <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" /> + <mdattr:EntityAttributes> + <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>https://nebraska.edu/category/registered-by-nefed</saml:AttributeValue> + </saml:Attribute> + </mdattr:EntityAttributes> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">UNO - Hannon Hill Cascade Server (CMS)</mdui:DisplayName> + <mdui:Description xml:lang="en">UNO - Hannon Hill Cascade Server (CMS)</mdui:Description> + <mdui:InformationURL xml:lang="en">https://www.hannonhill.com/about-us/about-hannon-hill.html</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="en">https://www.hannonhill.com/legal/privacy.html</mdui:PrivacyStatementURL> + <mdui:Logo height="85" width="141" xml:lang="en"></mdui:Logo> + </mdui:UIInfo> + </Extensions> + <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol"> + <Extensions> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/Login" /> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/Login" index="1" /> + </Extensions> + <KeyDescriptor> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>*.cascadecms.com</ds:KeyName> + <ds:KeyName>cascadecms.com</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=*.cascadecms.com</ds:X509SubjectName> + <ds:X509Certificate>MIIGlDCCBXygAwIBAgIQA/SpjvHXkUCWAZHunT1s8zANBgkqhkiG9w0BAQsFADBZ MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMTMwMQYDVQQDEypS YXBpZFNTTCBUTFMgRFYgUlNBIE1peGVkIFNIQTI1NiAyMDIwIENBLTEwHhcNMjEx MjE1MDAwMDAwWhcNMjIxMTE4MjM1OTU5WjAbMRkwFwYDVQQDDBAqLmNhc2NhZGVj bXMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4/8T2U40xgk2 yFiAvUo97mnvhNgTXA8WWJAAKj25hed995sGQNBqXLui/qE3HMciEFpe16XDRZrb NTbd5idKCt3cgJjGx2vydJo3dncqLTbuV/t4tn+2twlP0NhWsoswrQ1EziYnASD6 g+xujf9oYOkJqSBJfqQNvii9BgHMnhx/CJfRXXTTNRM05rpYAOSRVyTDNJPOGCWU kunxWwqz1+ApQRIlL91uNjYBICLU+0yXTuiNr9xiGlog3fN4Ns/p+w508zdKQtrs jflAKdTVTXigho/kvfXp3m4AmS/dHfi/K6MiBVa/oPaxSz0ZDddEykOtSR1aAF5E QS6K9/8FGQIDAQABo4IDlDCCA5AwHwYDVR0jBBgwFoAUpI3lvnx55HAjbS4pNK0j WNz1MX8wHQYDVR0OBBYEFPKEe5ESIhluH20dTEnWJ0hBh1rZMCsGA1UdEQQkMCKC ECouY2FzY2FkZWNtcy5jb22CDmNhc2NhZGVjbXMuY29tMA4GA1UdDwEB/wQEAwIF oDAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwgZsGA1UdHwSBkzCBkDBG oESgQoZAaHR0cDovL2NybDMuZGlnaWNlcnQuY29tL1JhcGlkU1NMVExTRFZSU0FN aXhlZFNIQTI1NjIwMjBDQS0xLmNybDBGoESgQoZAaHR0cDovL2NybDQuZGlnaWNl cnQuY29tL1JhcGlkU1NMVExTRFZSU0FNaXhlZFNIQTI1NjIwMjBDQS0xLmNybDA+ BgNVHSAENzA1MDMGBmeBDAECATApMCcGCCsGAQUFBwIBFhtodHRwOi8vd3d3LmRp Z2ljZXJ0LmNvbS9DUFMwgYUGCCsGAQUFBwEBBHkwdzAkBggrBgEFBQcwAYYYaHR0 cDovL29jc3AuZGlnaWNlcnQuY29tME8GCCsGAQUFBzAChkNodHRwOi8vY2FjZXJ0 cy5kaWdpY2VydC5jb20vUmFwaWRTU0xUTFNEVlJTQU1peGVkU0hBMjU2MjAyMENB LTEuY3J0MAkGA1UdEwQCMAAwggF/BgorBgEEAdZ5AgQCBIIBbwSCAWsBaQB2ACl5 vvCeOTkh8FZzn2Old+W+V32cYAr4+U1dJlwlXceEAAABfb7guCwAAAQDAEcwRQIg XqmAnVwqpsOb/8zmIQOUVsp0BkHAoAKYfNoYuJ2opeoCIQCmyabBpZE1l/bWKP3d kcDUvSfDkmLwgCOOWGzxUsMf2wB3AFGjsPX9AXmcVm24N3iPDKR6zBsny/eeiEKa Df7UiwXlAAABfb7guGsAAAQDAEgwRgIhAPYvzJSeYNZJNVWeu+Pc74tgDwuVv1MX 5D3LlFIoJROKAiEA0myN1VBYOpwvo4XgoJXzJB9Vqg8h5LC9Sk/aiT3GVKIAdgBB yMqx3yJGShDGoToJQodeTjGLGwPr60vHaPCQYpYG9gAAAX2+4Lf/AAAEAwBHMEUC IQDiPOyBSencNEiMy9J2uS9ZWUX99nUiysi22IBXQ3JhpwIgGip+vnQdk2mmci3P SyD/NedLtR4v3h5VR6MuQywqy6UwDQYJKoZIhvcNAQELBQADggEBACn4DijEW3sc dcKPwvhLBqgDboaZOgT126M9Jss/SDPd7pXJppb4xnuxN0z19Jpf8Fgz0roOJB6R fDlVtYgRJ5Al7mq39fdvvllVHYWVrD5qRn2hL+XRxCreJKeL82fwHYR2eqCAEZ3m CvD6Qt0lBR6xwYMuYbr4gndldXUecWInOtqCVqvCsbeP5Nq2eCYmSMGinRJZgSRw JeUV+h4i/ueqbieNtxRi4DwyPsmg5QP4u100LOtTUbdHmaJ37F9J4TsqeQBSJkeQ Rcb+b+YKM3aDmHUYMPduxG8r/Hf/WxEslE/XPKUiARgDsTzCH6nOj1zh2F9i6A09 ZobCJwYINOg= </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm" /> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm" /> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p" /> + </KeyDescriptor> + <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/Artifact/SOAP" index="1" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SLO/SOAP" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SLO/Redirect" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SLO/POST" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SLO/Artifact" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SAML2/POST" index="1" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SAML2/Artifact" index="3" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SAML2/ECP" index="4" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SAML/POST" index="5" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://unomaha-dev.cascadecms.com/Shibboleth.sso/SAML/Artifact" index="6" /> + </SPSSODescriptor> + <Organization> + <OrganizationName xml:lang="en">Hannon Hill</OrganizationName> + <OrganizationDisplayName xml:lang="en">Hannon Hill</OrganizationDisplayName> + <OrganizationURL xml:lang="en">https://www.hannonhill.com/</OrganizationURL> + </Organization> + <ContactPerson contactType="technical"> + <GivenName>Eric Wingert</GivenName> + <EmailAddress>ewingert@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="support"> + <Company>Eric Wingert</Company> + <EmailAddress>ewingert@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="administrative"> + <GivenName>Elizabeth Billington</GivenName> + <EmailAddress>ebillington@unomaha.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="other" recontactType="http://refeds.org/metadata/contactType/security"> + <GivenName>ITS Security Team</GivenName> + <EmailAddress>security@nebraska.edu</EmailAddress> + </ContactPerson> + </EntityDescriptor> </EntitiesDescriptor> \ No newline at end of file