diff --git a/nefed.xml b/nefed.xml index 4b6a6192066ee7908656f88ff0d54e3be6c70a0a..a237d436909c76d98ba0741727a2b83c5eb48676 100644 --- a/nefed.xml +++ b/nefed.xml @@ -11277,4 +11277,99 @@ KNGked4df0r1o5CozJ35FjKx1fiYucuvGXU+UZd5Yg6sF6MRhQqud32X3eOFJXS/ndm/jGit7B6A <EmailAddress>security@nebraska.edu</EmailAddress> </ContactPerson> </EntityDescriptor> + <EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_65c574a9e8ccdf8b5e5a44e3b53483ee0cd460cc" entityID="https://nebunl.iwmsapp.com/archibus"> + <Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224" /> + <alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1" /> + <alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1" /> + <mdrpi:RegistrationInfo registrationAuthority="https://nebraska.edu/nefed" /> + <mdattr:EntityAttributes> + <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>https://nebraska.edu/category/registered-by-nefed</saml:AttributeValue> + </saml:Attribute> + <saml:Attribute Name="http://shibboleth.net/ns/attributes/releaseAllValues" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"> + <saml:AttributeValue>unNUID</saml:AttributeValue> + </saml:Attribute> + </mdattr:EntityAttributes> + <mdui:UIInfo> + <mdui:DisplayName xml:lang="en">Archibus</mdui:DisplayName> + <mdui:Description xml:lang="en">Archibus</mdui:Description> + </mdui:UIInfo> + </Extensions> + <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> + <Extensions> + <init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/Login" /> + <idpdisc:DiscoveryResponse xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/Login" index="1" /> + </Extensions> + <KeyDescriptor use="signing"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>ip-10-50-7-9.ec2.internal</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=ip-10-50-7-9.ec2.internal</ds:X509SubjectName> + <ds:X509Certificate>MIIEEjCCAnqgAwIBAgIJAKPPZnrqbHTOMA0GCSqGSIb3DQEBCwUAMCQxIjAgBgNV BAMTGWlwLTEwLTUwLTctOS5lYzIuaW50ZXJuYWwwHhcNMjAxMjA4MTYxNDI2WhcN MzAxMjA2MTYxNDI2WjAkMSIwIAYDVQQDExlpcC0xMC01MC03LTkuZWMyLmludGVy bmFsMIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAu8O8Qb2obJnyQzhO aUB98OWH1tCt16LPYciK/bxb9dZVmGLZuWM6A0L80BrcR6VjseS8pB4oT1n5Z8tC +0mS+AGZPrZOzUmbKycYEH8gU/513GHYK1zVT5sTlHBp0fvRRalAhGA7Cs68UQiK fDO4klQsiGY278Ix4oXguJ6XEq+yAOH0mP3jp7eMJpg5Jyhky69lFJZS/arL8hUG 7QiZI4rwPTs1Ewucl8PbIiB67eXLciUHts18+naWl1yWBQQDWV3zbR903r/GwLsX kat4m1a3xAb3Hd3EyvS7QBQaoP3ZuWplpXuqRBspSUq5tCWM33WpeTxSnu3p3YE/ OwaOMDrHGHLb8mmD4RKfDJlU20BcPBWjoi9aeZurNy3CTSuu64+9XbZCLYDmHR1C CXwNmUKLzd0XwobXdBsQVSotIf8BH4Ao/jScRGEV8SFrBfC46hAhT2bkhcHcCDgC VhngTdVArixtfdHtopRhejL1vkxkjdd/FHhZT53Dfkx3ACp5AgMBAAGjRzBFMCQG A1UdEQQdMBuCGWlwLTEwLTUwLTctOS5lYzIuaW50ZXJuYWwwHQYDVR0OBBYEFBU/ r/gJVw+ick+83dDNwrqw9RM/MA0GCSqGSIb3DQEBCwUAA4IBgQAGIP+tChLxHRNA Uk1UswQyGfiUnkokdr1eF79lXs+BjAb0IhXrN8Dt7rYUfqe0bB95icZz/me2x6B7 vfDDojaYDASJDCwar9keAOe4lK/i7dIpVAWdPxeKpZK0vWkKZlNJP8/OaunFil7q u15IOSmMFAXXSq4cduudbsyUP99suMp/x3j6zaesKvKOHQevZYEjxYdCfIpLjW7i y94wAZ+gWTh3soHCCQ7e+KrxBwvQwXjRLgqW42eMKNvbfzbhe5UiePKmfH6yreAq O5xFTaXU5sdGDdcyRtLTGywkcxxo/Xp+8Vux1rO0OLjkJfr7rlf2NE0I9hEpsSiS DTkZRm3aF89xsJBo0o1WI+vm37LHMZqeWoWj7xRSSPLqK4rj+QJ1ZY8shtseR3va qgZqd8pZMpdBqMKDeYLBTEEVfiWxaXglvOf8Sw5tA2EG6RiAERNYQXU1v5jHVaq2 /ZTHurVVSDPse7mIlprnZIZTy9tngiIl1yow583sDlZm+UcVQHU=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + </KeyDescriptor> + <KeyDescriptor use="encryption"> + <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> + <ds:KeyName>ip-10-50-7-9.ec2.internal</ds:KeyName> + <ds:X509Data> + <ds:X509SubjectName>CN=ip-10-50-7-9.ec2.internal</ds:X509SubjectName> + <ds:X509Certificate>MIIEEjCCAnqgAwIBAgIJALkmIOK7EEjiMA0GCSqGSIb3DQEBCwUAMCQxIjAgBgNV BAMTGWlwLTEwLTUwLTctOS5lYzIuaW50ZXJuYWwwHhcNMjAxMjA4MTYxNDI3WhcN MzAxMjA2MTYxNDI3WjAkMSIwIAYDVQQDExlpcC0xMC01MC03LTkuZWMyLmludGVy bmFsMIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAuQM7j+hn+zp6jwlK nPpD2lvkbWhF5QeSHkVPB36oytyL6jrnkBmcY1sCmMUuirscLSf1GOgQKnydnXoF RoAmhOCtUIW0XwcIToNl342vvQs3y+sMTPv8iYOMKra3NnZVuEuYgkNgSx6RqJzm 8+4SU4O9mPOfshpZ9KCoo6V0pocR01QhBoATPCIF8NjhujUz7Of8vuXCDgE1ZIVI YVKRpigT7czBSu/qpLJ/I+493nqJEdeRAVE2zXZ0VS5k0n9PWwD6qOlbW9iZZ5ZR 9e7CDK+nADgg964UpBB+JLnacHN0d9PffCjcSYKvpPIne5iu0ZFXJ1U67uzUb3LC Vu8FH0949rZXc6nOz0pbpfWnUZzYc/3NSMCi+3VcErR/G5V6UnA9C3a2ZKoRL3FC J77VTjRoJsTvPkRpBf68IqNj/3DTWhOa28cbX1ahYjnN2ePX/6iNoJcn9a+BRcMJ jePseVftcxryqXDcf3DyLOqkvgvHO5qFTkQ+hN5B2cjg052lAgMBAAGjRzBFMCQG A1UdEQQdMBuCGWlwLTEwLTUwLTctOS5lYzIuaW50ZXJuYWwwHQYDVR0OBBYEFN7e Xd/05hK4zY9NypKsgjA0l8w8MA0GCSqGSIb3DQEBCwUAA4IBgQA1yqjaSmn3TrJ3 uK6OfQoQjCpLpGX0+BqupxC9cKVwCuHm26ej/ZqP4EBYlhEDQwHIo3cHIPkkgnjl AyYBYsTRW0mYUY8Tj9fguZ79q8sPlYy2YpeiKFpMF6ZAX8kA2QyfSakXD1xnJ4El HxYNOx+xRvC7aD8CWd2HtucWX1FuFleWw29JsM+LYNe9S1n7kiRAYmeGOgLjCZcc MKGcYoCO4IN7LgjYR4GSoIMxmCPO/djkEb4gRrg3HeSxV3N6irqMkqK4pfnMjjnO nn/v4EO+qEbQ8JRvlXAXf78kY+93jX5Zh1nXL2IJsbHKE3NPPQtQGlPI7ZZvqSa2 rIMhacsueQC+4ZK5yqGnCtkdU4AmhKGHvKBashcVWumR2YJp0CiB7aBXrpORmFvy MoeNb2D4rtWfKzxA4hMF5VhHA/dSq2LQWEgVEXzJGcdFalL8ZmUVZ4IAIFituKz6 swVQ56+o8ICxrX30tLpZtH5LjfIeoAq7iX9fpBtgZ4ZsPDPRjis=</ds:X509Certificate> + </ds:X509Data> + </ds:KeyInfo> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm" /> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm" /> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc" /> + <EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep" /> + <EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p" /> + </KeyDescriptor> + <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/Artifact/SOAP" index="1" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/SLO/SOAP" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/SLO/Redirect" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/SLO/POST" /> + <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/SLO/Artifact" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/SAML2/POST" index="1" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/SAML2/Artifact" index="3" /> + <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nebunl.iwmsapp.com/Shibboleth.sso/SAML2/ECP" index="4" /> + </SPSSODescriptor> + <Organization> + <OrganizationName xml:lang="en">Archibus</OrganizationName> + <OrganizationDisplayName xml:lang="en">Archibus</OrganizationDisplayName> + </Organization> + <ContactPerson contactType="technical"> + <GivenName>Corrie Svehla</GivenName> + <EmailAddress>csvehla@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="administrative"> + <GivenName>Jack Dohrman</GivenName> + <EmailAddress>jdohrman@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="support"> + <GivenName>Corrie Svehla</GivenName> + <EmailAddress>csvehla@nebraska.edu</EmailAddress> + </ContactPerson> + <ContactPerson contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security"> + <GivenName>ITS Security</GivenName> + <EmailAddress>security@nebraska.edu</EmailAddress> + </ContactPerson> + </EntityDescriptor> </EntitiesDescriptor>