From 9b8a9feec2529255c1023a32c63f0bc178aa1081 Mon Sep 17 00:00:00 2001 From: Rory Larson <rarson1@unl.edu> Date: Tue, 4 Apr 2023 15:08:20 -0500 Subject: [PATCH] Adding Ariba for Roger Korth. --- nefed.xml | 118 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 118 insertions(+) diff --git a/nefed.xml b/nefed.xml index e1f2c36..cec578c 100644 --- a/nefed.xml +++ b/nefed.xml @@ -27903,4 +27903,122 @@ <EmailAddress>security@nebraska.edu</EmailAddress> </ContactPerson> </EntityDescriptor> +<EntityDescriptor entityID="http://nusystemchildsite-1-T.procurement3.ariba.com" urn:name="Ariba-Buyer" urn:LogLevel="STANDARD" urn:isActive="true" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:urn="urn:sourceid.org:saml2:metadata-extension:v2"> + <Extensions> + <urn:EntityExtension LicenseGroup="" PFVersion="6.10.0.4"> + <urn:DigitialSignatureAliases includeX509inXmlSig="false"/> + <urn:Encryption> + <urn:EncryptionPolicy SLOEncryptSubjectNameID="false" EncryptSubjectNameID="false" EncryptAssertion="false" KeyTransportAlgorithm="http://www.w3.org/2001/04/xmlenc#rsa-1_5" EncryptionAlgorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/> + <urn:DecryptionPolicy SLOSubjectNameIDEncrypted="false" AttributeEncrypted="false" SubjectNameIDEncrypted="false" AssertionEncrypted="false"/> + </urn:Encryption> + <urn:Dependencies> + <urn:SigningKeyPairReference MD5Fingerprint="b920d1dd33f916abe4e2246e0d4f1875"/> + <urn:DsigVerificationCert/> + <urn:SecondaryDsigVerificationCert/> + <urn:DecryptionKeyPairReference/> + <urn:EncryptionCert/> + <urn:SoapAuth> + <soap:Incoming xmlns:soap="http://www.sourceid.org/2004/04/soapauth"/> + <soap:Outgoing xmlns:soap="http://www.sourceid.org/2004/04/soapauth"/> + </urn:SoapAuth> + </urn:Dependencies> + <urn:ConnectionTemplateProperties/> + </urn:EntityExtension> + </Extensions> + <SPSSODescriptor WantAssertionsSigned="true" AuthnRequestsSigned="true" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <Extensions> + <urn:RoleExtension ArtifactTimeoutSeconds="60"> + <urn:IncomingBindings SOAP="false" Redirect="true" POST="true" Artifact="false"/> + <urn:EnabledProfiles SPInitiatedSLO="false" SPInitiatedSSO="true" IDPInitiatedSLO="false" IDPInitiatedSSO="true"/> + <urn:SP ConnectionTargetType="Standard" AssertionValidityBeforeMinutes="5" AssertionValidityAfterMinutes="5"> + <urn:AdapterToAssertionMapping AdapterInstanceId="Composite" AbortIfNotFoundInAnyDataSources="false"> + <urn:DefaultAttributeMapping> + <urn:AttributeMap Value="mail" AttributeSourceId="CUSTOM-LDAP" Type="LDAP" Name="SAML_SUBJECT"/> + <urn:AttributeSource DataSourceId="LDAP-5C14D8F805F301B74FF88CB1D36E1C1ACEAD216D" Type="LDAP" Description="LDAPMail" Id="LDAP"> + <urn:Parameter Value="SUBTREE_SCOPE" Name="search_scope"/> + <urn:Parameter Value="DC=CUSTOM,DC=Com" Name="search_base"/> + <urn:Parameter Value="sAMAccountName=${Username}" Name="filter"/> + </urn:AttributeSource> + <urn:AttributeSource DataSourceId="LDAP-5C14D8F805F301B74FF88CB1D36E1C1ACEAD216D" Type="LDAP" Description="SDLDAPMail" Id="SDLDAP"> + <urn:Parameter Value="SUBTREE_SCOPE" Name="search_scope"/> + <urn:Parameter Value="DC=SDCUSTOM,DC=CUSTOM,DC=Com" Name="search_base"/> + <urn:Parameter Value="sAMAccountName=${Username}" Name="filter"/> + </urn:AttributeSource> + <urn:TokenAuthorizationIssuanceCriteria/> + </urn:DefaultAttributeMapping> + </urn:AdapterToAssertionMapping> + <urn:NameIdentifierMappingType IncludeAdditionalTransientAttributes="false" IncludeAdditionalAttributes="false"/> + </urn:SP> + </urn:RoleExtension> + </Extensions> + <KeyDescriptor use="signing"> + <ds:KeyInfo> + <ds:X509Data> + <ds:X509Certificate>MIIG/jCCBeagAwIBAgIQDErZ7FG3u3sOIHbCq8TG3jANBgkqhkiG9w0BAQsFADBP +MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMSkwJwYDVQQDEyBE +aWdpQ2VydCBUTFMgUlNBIFNIQTI1NiAyMDIwIENBMTAeFw0yMjA0MTIwMDAwMDBa +Fw0yMzA0MTIyMzU5NTlaMG8xCzAJBgNVBAYTAlVTMRUwEwYDVQQIEwxQZW5uc3ls +dmFuaWExFzAVBgNVBAcTDk5ld3Rvd24gU3F1YXJlMRkwFwYDVQQKExBTQVAgQW1l +cmljYSBJbmMuMRUwEwYDVQQDEwxzMy5hcmliYS5jb20wggEiMA0GCSqGSIb3DQEB +AQUAA4IBDwAwggEKAoIBAQDkWDZbkBrLuHDiBP5S8yWgyyHe95kkOIktqiFtgPF8 +mVznc266zoHe98SZizSOG5CvCOkeBoI/PAbdy7vJ4c76JlJNRUmqgNGSrkCANdw9 +dfQZ5QUlTb1XdpyTSch5beldzz/uqV77oQoREf7KYwAGVfF2014YhiQSnx41ks03 +OdhbgLpOF7KQbiKYwCAEKhjMCzBlU/wKJbEiW+TFPIKPWtoegLpGMFCqpNqa/Q49 +Tgj8Ax/6D2rLhPy8IoOYVteyLVVC5tg0qe8yLKWH/E+SWQhjkxSoYiGHV7JM1AQ6 +aeIDOBGPdOPx3hV3xIK+4ThUy4+0lrbyJYY8gkOiOaGJAgMBAAGjggO0MIIDsDAf +BgNVHSMEGDAWgBS3a6LqqKqEjHnqtNoPmLLFlXa59DAdBgNVHQ4EFgQUbMsN3oRE +CBftqmsftZijrJofnb4wXwYDVR0RBFgwVoIMczMuYXJpYmEuY29tghUqLnNvdXJj +aW5nMy5hcmliYS5jb22CGCoucHJvY3VyZW1lbnQzLmFyaWJhLmNvbYIVKi5zdXBw +bGllcjMuYXJpYmEuY29tMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAUBggrBgEF +BQcDAQYIKwYBBQUHAwIwgY8GA1UdHwSBhzCBhDBAoD6gPIY6aHR0cDovL2NybDMu +ZGlnaWNlcnQuY29tL0RpZ2lDZXJ0VExTUlNBU0hBMjU2MjAyMENBMS00LmNybDBA +oD6gPIY6aHR0cDovL2NybDQuZGlnaWNlcnQuY29tL0RpZ2lDZXJ0VExTUlNBU0hB +MjU2MjAyMENBMS00LmNybDA+BgNVHSAENzA1MDMGBmeBDAECAjApMCcGCCsGAQUF +BwIBFhtodHRwOi8vd3d3LmRpZ2ljZXJ0LmNvbS9DUFMwfwYIKwYBBQUHAQEEczBx +MCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5kaWdpY2VydC5jb20wSQYIKwYBBQUH +MAKGPWh0dHA6Ly9jYWNlcnRzLmRpZ2ljZXJ0LmNvbS9EaWdpQ2VydFRMU1JTQVNI +QTI1NjIwMjBDQTEtMS5jcnQwCQYDVR0TBAIwADCCAX4GCisGAQQB1nkCBAIEggFu +BIIBagFoAHYA6D7Q2j71BjUy51covIlryQPTy9ERa+zraeF3fW0GvW4AAAGAH5gg +4AAABAMARzBFAiAO8OpZQ4Ka7ODbXGRrTREVmizC4VaYXN6gwM381ooR/AIhAL60 +9lyaQiip2NnnCOEfg7QsUvfUwHQSkJoEVL6pKdvhAHUANc8ZG7+xbFe/D61MbULL +u7YnICZR6j/hKu+oA8M71kwAAAGAH5gg/gAABAMARjBEAiBFZXMwyQqVIpFEfgEo +QE9yCm++gI5OrxvO5Q2DFpIooAIgcnu9S5XXKhMCrnHJ71NsTsawcHY6AzdNvjJu +XFdaSd4AdwCzc3cH4YRQ+GOG1gWp3BEJSnktsWcMC4fc8AMOeTalmgAAAYAfmCEz +AAAEAwBIMEYCIQDzXt0uio2ZikKxJ9wHu+jCo3j0DVOEcQBLDJB3z4BLMAIhAIbt +T0VO0FsSRUHqvSKnloc3bY7MrDm5XDwGky2Rz0+MMA0GCSqGSIb3DQEBCwUAA4IB +AQBUZxFAvd7zdiHoVFYAXCPAgIEKILVPgIJFBnjB5ldzw7p+TRiiJrs4mG0iMAe7 +RiguEUYJNP6il9xc1LjcQC/QWrPc9qWtWenYYtEgT7DbUlIi7z2AgTr5GIE/oCdi +YUmPEJ/imkD8J2gEaixAdlgUImF1o9tr1TL92+/3fanz2jvUAIJqmIsQ/vbFWFUX +O1p7E/2BsqnlBNZc21paNGcDTbqLXXt2JF1yj3vu8vQU4Q96PLvyUMZIkF6xxlGw +bkvFps1kKLz6fChbvrOSl3wHgnhhodqfFAgbkKugsmKERdPoeJ8gThtW1FsK2pw3 +U7pqIOAidMaJagDd0Q3dxWGl</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:emailAddress</NameIDFormat><AssertionConsumerService isDefault="true" Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://s3.ariba.com/Buyer/Main/ad/samlAuth/SSOActions?realm=nusystemchildsite-1-T" index="1"/> </SPSSODescriptor> + <Organization> + <OrganizationName xml:lang="en">Ariba</OrganizationName> + <OrganizationDisplayName xml:lang="en">Ariba</OrganizationDisplayName> + <OrganizationURL xml:lang="en">https://www.ariba.com/</OrganizationURL> + </Organization> + <ContactPerson contactType="technical"> + <GivenName>Roger Korth</GivenName> + <EmailAddress>rdkorth@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="support"> + <GivenName>Roger Korth</GivenName> + <EmailAddress>rdkorth@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="administrative"> + <GivenName>Edwin Mukusha</GivenName> + <EmailAddress>emukusha@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="other" + remd:contactType="http://refeds.org/metadata/contactType/security"> + <GivenName>ITS + Security</GivenName> + <EmailAddress>security@nebraska.edu</EmailAddress> + </ContactPerson> +</EntityDescriptor> + </EntitiesDescriptor> \ No newline at end of file -- GitLab