From ac9376f78f140284d3e2e9aa191dc6c814cfbef1 Mon Sep 17 00:00:00 2001 From: aljavonboles <aljavonboles@nebraska.edu> Date: Wed, 5 Jun 2024 17:37:46 -0500 Subject: [PATCH] Resolve "Onboard Roompact SSO" --- nefed.xml | 173 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 173 insertions(+) diff --git a/nefed.xml b/nefed.xml index 7d5ab34..f379ba6 100644 --- a/nefed.xml +++ b/nefed.xml @@ -33401,4 +33401,177 @@ <OrganizationURL xml:lang="en">https://universityofne.maps.arcgis.com</OrganizationURL> </Organization> </EntityDescriptor> + <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" + ID="_7e3b897c3f03b94e9af07e17d84443f95bb2b566" entityID="https://roompact.com/shibboleth"> + <ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:SignedInfo> + <ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" /> + <ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1" /> + <ds:Reference URI="#_7e3b897c3f03b94e9af07e17d84443f95bb2b566"> + <ds:Transforms> + <ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-sig..." /> + <ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" /> + </ds:Transforms> + <ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256" /> + <ds:DigestValue>nINKrrSluCV/seEmzYAtbIhcukwGkq9MOvdmMRkqYEc=</ds:DigestValue> + </ds:Reference> + </ds:SignedInfo> + <ds:SignatureValue>H2aoxvydrFEchlwq6AAb+fU+O57ymb0E2152J8WplYXI/JLxTZeyenIcopnmrwx7 + kfSgbDaUotu918+bkYoCOXveHBJy50KkbemBwcxk7q6e4BpQw7QebcdLw8zKK7+G + TudyWdEaIvE5Ha9IWh2Z3RKjdMLMtGNltJvZ/yJKl8EdqldTpLVOQoCBThsD68PG + eak6IPdarhSCcjCtj6ZTIJ+QXYiKA4nOX6z1eZUMS7SqlsHhrLGgCryRoatNT0Af + fjg/4hGWCbPfkhpdjhdQ+37QaHpph3x3JDbzfD5GPkmxdIqSvcDrDosy162bI/Cm + Jua2BUJoLjJ07+iQvgxf1w==</ds:SignatureValue> + <ds:KeyInfo> + <ds:KeyName>roompact.com</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=roompact.com</ds:X509SubjectName> + <ds:X509Certificate>MIIC7TCCAdWgAwIBAgIJAO5fd7pTmmr0MA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV + BAMTDHJvb21wYWN0LmNvbTAgFw0xNzA4MDMxODQyNDZaGA8yMTE3MDcxMDE4NDI0 + NlowFzEVMBMGA1UEAxMMcm9vbXBhY3QuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOC + AQ8AMIIBCgKCAQEA0GAnOemM+GhHn1Q3umm2wtKo5JfyVeHlkTs6IGIK2pUFewA7 + yEeFQLhhA0t1RuoPbu0iI+fxS2L8iHSBuQMc+ohVp9dowZ+mHcCivCvXTd7o4kzg + TeAohObiXprEYB2HkFSl/hHkc3GiidAL0aySin9Yo5obMZl02lAjeEz9JQ6Z284m + FwTunNqrQxIgSNQ2OBUcQAJIUI9D8jG+CRQtKhBCVGvluoz/BTigDyI1K1c6xWiX + zhidzmczV0OWDLf9dPxQKQkRjkLAo5O7qSrw0hy0Nxh7+A+FxA6CXUh+ZW6rksMo + 9e62iVJt3PzaU1RjrQ1mWIJq5q1hPZuBlOZekQIDAQABozowODAXBgNVHREEEDAO + ggxyb29tcGFjdC5jb20wHQYDVR0OBBYEFIV8Ge+ZcVQ8mW6DAl8Am7Jl6wICMA0G + CSqGSIb3DQEBBQUAA4IBAQA3VpZU0gvkghTMQ/h/eDGRF4XzxZxNcdBmbgrf2gYJ + i5arZwBRmCgwLbeIBP50wvcCyn/5h0+I9LcGX2Pwa/5u3uX+D/SLZNUuLbUFBl7O + pvns/Yutg5R36jlgxLgfwyhD+JEhfQY3xIhIy5IKm08StOwDNn+s50QE4a1zTS0U + aptfpY5kowx7NDR9ZG/c2qNBCPp9q4c8W6SzWWdg0cqSgYF0aIqo5iHs7UlLxtUF + rXMUx077IYc89WB/D5hxsOTu4GOIRhPT6lb5AG8EAdliMBGoR+Et0/bht7InDXFi + BVrmNKyzmmlHQbstJLRD8qbzpaUqAStS1MtVkhGyD3SR </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </ds:Signature> + <Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sh..." /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sh..." /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sh..." /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sh..." /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1" /> + </Extensions> + <Extensions> + <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" /> + <mdattr:EntityAttributes> + <saml:Attribute Name="http://macedir.org/entity-category" + NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>https://nebraska.edu/category/registered-by-nefed</saml:AttributeValue> + </saml:Attribute> + <saml:Attribute Name="http://shibboleth.net/ns/attributes/releaseAllValues" + NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue> + unNUID + </saml:AttributeValue> + </saml:Attribute> + </mdattr:EntityAttributes> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">Roompact</mdui:DisplayName> + <mdui:Description xml:lang="en">Designed for residence life and education, + Roompact’s + software fills the gap between Housing Management Software (HMS) and Student + Conduct + Software.</mdui:Description> + <mdui:InformationURL xml:lang="en">https://www.roompact.com/about/</mdui:InformationURL> + <mdui:PrivacyStatementURL xml:lang="en"> + https://www.roompact.com/terms-and-conditions-privacy-policy/</mdui:PrivacyStatementURL> + <mdui:Logo height="85" width="141" xml:lang="en"> + </mdui:Logo> + </mdui:UIInfo> + </Extensions> + <SPSSODescriptor + protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:1.0:protocol"> + <Extensions> + <init:RequestInitiator + xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" + Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" + Location="https://roompact.com/Shibboleth.sso/Login" /> + </Extensions> + <KeyDescriptor> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>roompact.com</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=roompact.com</ds:X509SubjectName> + <ds:X509Certificate>MIIC7TCCAdWgAwIBAgIJAO5fd7pTmmr0MA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV + BAMTDHJvb21wYWN0LmNvbTAgFw0xNzA4MDMxODQyNDZaGA8yMTE3MDcxMDE4NDI0 + NlowFzEVMBMGA1UEAxMMcm9vbXBhY3QuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOC + AQ8AMIIBCgKCAQEA0GAnOemM+GhHn1Q3umm2wtKo5JfyVeHlkTs6IGIK2pUFewA7 + yEeFQLhhA0t1RuoPbu0iI+fxS2L8iHSBuQMc+ohVp9dowZ+mHcCivCvXTd7o4kzg + TeAohObiXprEYB2HkFSl/hHkc3GiidAL0aySin9Yo5obMZl02lAjeEz9JQ6Z284m + FwTunNqrQxIgSNQ2OBUcQAJIUI9D8jG+CRQtKhBCVGvluoz/BTigDyI1K1c6xWiX + zhidzmczV0OWDLf9dPxQKQkRjkLAo5O7qSrw0hy0Nxh7+A+FxA6CXUh+ZW6rksMo + 9e62iVJt3PzaU1RjrQ1mWIJq5q1hPZuBlOZekQIDAQABozowODAXBgNVHREEEDAO + ggxyb29tcGFjdC5jb20wHQYDVR0OBBYEFIV8Ge+ZcVQ8mW6DAl8Am7Jl6wICMA0G + CSqGSIb3DQEBBQUAA4IBAQA3VpZU0gvkghTMQ/h/eDGRF4XzxZxNcdBmbgrf2gYJ + i5arZwBRmCgwLbeIBP50wvcCyn/5h0+I9LcGX2Pwa/5u3uX+D/SLZNUuLbUFBl7O + pvns/Yutg5R36jlgxLgfwyhD+JEhfQY3xIhIy5IKm08StOwDNn+s50QE4a1zTS0U + aptfpY5kowx7NDR9ZG/c2qNBCPp9q4c8W6SzWWdg0cqSgYF0aIqo5iHs7UlLxtUF + rXMUx077IYc89WB/D5hxsOTu4GOIRhPT6lb5AG8EAdliMBGoR+Et0/bht7InDXFi + BVrmNKyzmmlHQbstJLRD8qbzpaUqAStS1MtVkhGyD3SR </ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm" /> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm" /> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p" /> + </KeyDescriptor> + <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" + Location="https://roompact.com/Shibboleth.sso/Artifact/SOAP" index="1" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" + Location="https://roompact.com/Shibboleth.sso/SLO/SOAP" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" + Location="https://roompact.com/Shibboleth.sso/SLO/Redirect" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" + Location="https://roompact.com/Shibboleth.sso/SLO/POST" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" + Location="https://roompact.com/Shibboleth.sso/SLO/Artifact" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" + Location="https://roompact.com/Shibboleth.sso/SAML2/POST" index="1" /> + <AssertionConsumerService + Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" + Location="https://roompact.com/Shibboleth.sso/SAML2/POST-..." index="2" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" + Location="https://roompact.com/Shibboleth.sso/SAML2/Artifact" index="3" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" + Location="https://roompact.com/Shibboleth.sso/SAML2/ECP" index="4" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" + Location="https://roompact.com/Shibboleth.sso/SAML/POST" index="5" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" + Location="https://roompact.com/Shibboleth.sso/SAML/Artifact" index="6" /> + </SPSSODescriptor> + <ContactPerson contactType="technical"> + <GivenName>Andrew Christenson</GivenName> + <EmailAddress>andrew.christenson@unl.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="administrative"> + <GivenName>Abby Groth</GivenName> + <EmailAddress>agroth@unl.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="support"> + <GivenName>Andrew Christenson</GivenName> + <EmailAddress>andrew.christenson@unl.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="other" + remd:contactType="http://refeds.org/metadata/contactType/security"> + <GivenName>ITS Security</GivenName> + <EmailAddress>security@nebraska.edu</EmailAddress> + </ContactPerson> + </EntityDescriptor> </EntitiesDescriptor> -- GitLab