Add montior-dev to satosa proxy.

This commit is contained in:
Johan Björklund 2024-11-27 16:30:48 +01:00
parent 10658d4739
commit 2b7288f631
Signed by untrusted user: bjorklund
GPG key ID: 5E8401339C7F5037
2 changed files with 84 additions and 0 deletions

View file

@ -103,6 +103,7 @@ saml2_frontend:
- metadata/intelmq-dev.xml
- metadata/intelmq-test.xml
- metadata/intelmq.xml
- metadata/monitor-dev.xml
entityid: https://test-sso-proxy.cert.sunet.se/idp
service:
idp:

View file

@ -0,0 +1,83 @@
<!--
This is example metadata only. Do *NOT* supply it as is without review,
and do *NOT* provide it in real time to your partners.
-->
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_6e37ffc449f8ea5a7f0d0bc52db7961b988a8c27" entityID="https://monitor-dev.cert.sunet.se">
<md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
</md:Extensions>
<md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://monitor-dev.cert.sunet.se/Shibboleth.sso/satosa"/>
</md:Extensions>
<md:KeyDescriptor>
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:KeyName>shib_cert</ds:KeyName>
<ds:X509Data>
<ds:X509SubjectName>CN=shib_cert</ds:X509SubjectName>
<ds:X509Certificate>MIIFCTCCAvGgAwIBAgIUJBQ1oBmvrt453SXVkOX2z15Rwx0wDQYJKoZIhvcNAQEL
BQAwFDESMBAGA1UEAwwJc2hpYl9jZXJ0MB4XDTI0MTEyNzEzMjE0NFoXDTM0MTEy
NTEzMjE0NFowFDESMBAGA1UEAwwJc2hpYl9jZXJ0MIICIjANBgkqhkiG9w0BAQEF
AAOCAg8AMIICCgKCAgEAzwRg+4Lql8VDrxeRlPIAHPyaWpb45jRyZyQdNQh3MxFs
xzjgRQACdDwUuzrawG0k9XgtJmb33wEkN4uB/Y+gFKAC2gMahcyMoGcOaEeourQ1
2pPgNMhriIde6pHffSloibX4Y5bffNQ7oJJbq7GY11+EzrGr1xpQojfSsJ1YZewI
IZw4THkp6ECEQ8JEsmkdzqdF0VpfCasspMavLPBgjag1VKVHLrxDqcMmul+ndQ+N
nElAvAdtxTgCPoZqbLYr9woABRtHq8ZRcMnSzSVJZ10lsHiVz9vGhhi+sv4hub0c
wL6hw6o9eyrd995Ooa0O3IX3qopIpSdmpuekCsmjYh3WLweCMW3S/iMw1bjaV0ek
yZpzpiXbSrQiK0b9UiHbq4FeCO+AeWumpi59GByadOIfKy11fja19DWupUnbhOYJ
0hKUTLy793KUG1H22onKO+1nF3ZsL5bVJa+LMBi2gAbL8BQ5wL2Hi2rJpXH84iWL
2ihyzY8GKyfj6Cges/mm48N3MAbYjpJn2e6PJzDTSi/qYsoZsnVBqlWaJYOb7SL6
Hho1/MkdDq2FjQ0ThL9VBFzI3yztRkbkiawmkpB6SxNwkw1X830o6CR/D0rpzogC
MCtfnTawXWEiCg8WQDinNMCVDVdHok0+c7B5PquAkV2qLmIGXuPHJo6YGoWDqtUC
AwEAAaNTMFEwHQYDVR0OBBYEFG9Y4uKCK+IfggonkO6C4Zi2Jxy3MB8GA1UdIwQY
MBaAFG9Y4uKCK+IfggonkO6C4Zi2Jxy3MA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZI
hvcNAQELBQADggIBACVpGk+hyoD7EHguBUuLg1bJfXRUE81kVrUxj+sw2bjfkIt6
ULKgZ7PefppMqAdQ76M41QtqJrTX9UTu21pz6Cb4gwHQsLnyOkIn+NV58ZU9Hde4
lbOjeuf44xh5fxiSGc9fA/vGUmn489o5N6X2v5sde1aXuhL9hz2Fli85rDQJYFOr
1rCQglACBVc6fv1Jh5w7ZELTYhBDZZKH61tgp0rlDCyxM2iIv3cj8Vh9lrG36jKO
qFhIEJ/3CQ55qVvPSEh8yKUJKQIYrsiuo5EDf7GX1Cbul2vi3DJJcWer3jZK8I/8
MFUSzYMfdsaivCPMVaEdKgFfsaZABM7SLJIkXzOEA6hr46i23hP7j+FsLVNf5rnl
wO04My3SLeMwIfsjGUx3vomAXYPbU0MnWicKwxI1P/pxYTx5JaYjxYXWZ8BV3nzi
x+pSMTN/jF++rW7ti+nbNcuOi6lBZOPQbp4YhQ+4GcMJPc+llWmIv0CdTaETcITN
XWzRW+gAgmqd+WzQsYDSvOOaVue6NRPO/S18xTVHzNmbLJM2FWr4lMmnr1hOaLm7
WpWxlI9khHRXjSSOa4Kkyfstm1kovsmAlNJHZ5i56W5cqCfjbDVTPkv/i6k13qoN
pqEhbWHwLUAWDVffcyPsDctEXCDLE9XYyiYHh0q/MnEGrR1ifsdqw7XLODub
</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://monitor-dev.cert.sunet.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://monitor-dev.cert.sunet.se/Shibboleth.sso/SLO/SOAP"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://monitor-dev.cert.sunet.se/Shibboleth.sso/SLO/Redirect"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://monitor-dev.cert.sunet.se/Shibboleth.sso/SLO/POST"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://monitor-dev.cert.sunet.se/Shibboleth.sso/SLO/Artifact"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://monitor-dev.cert.sunet.se/Shibboleth.sso/SAML2/POST" index="1"/>
</md:SPSSODescriptor>
</md:EntityDescriptor>