Added graylog-dev to sso

This commit is contained in:
Johan Björklund 2024-12-11 13:44:42 +01:00
parent 4e1e7f5446
commit 674b38ea2d
Signed by untrusted user: bjorklund
GPG key ID: 5E8401339C7F5037
4 changed files with 115 additions and 0 deletions

File diff suppressed because one or more lines are too long

View file

@ -0,0 +1,29 @@
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

View file

@ -104,6 +104,7 @@ saml2_frontend:
- metadata/intelmq-test.xml
- metadata/intelmq.xml
- metadata/monitor-dev.xml
- metadata/graylog-dev.xml
entityid: https://test-sso-proxy.cert.sunet.se/idp
service:
idp:

View file

@ -0,0 +1,83 @@
<!--
This is example metadata only. Do *NOT* supply it as is without review,
and do *NOT* provide it in real time to your partners.
-->
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="_4eeb7fcfff07b673bb78729821e8cad4ab401c87" entityID="https://graylog-dev.cert.sunet.se">
<md:Extensions xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport">
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha384"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#sha224"/>
<alg:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha224"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha384"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2009/xmldsig11#dsa-sha256"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<alg:SigningMethod Algorithm="http://www.w3.org/2000/09/xmldsig#dsa-sha1"/>
</md:Extensions>
<md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<init:RequestInitiator xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Binding="urn:oasis:names:tc:SAML:profiles:SSO:request-init" Location="https://graylog-dev.cert.sunet.se/Shibboleth.sso/satosa"/>
</md:Extensions>
<md:KeyDescriptor>
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:KeyName>shib_cert</ds:KeyName>
<ds:X509Data>
<ds:X509SubjectName>CN=shib_cert</ds:X509SubjectName>
<ds:X509Certificate>MIIFCTCCAvGgAwIBAgIUVz67XTGuDQ/lV21pY2Ic59Fr7KAwDQYJKoZIhvcNAQEL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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes128-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes192-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#aes256-gcm"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes192-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#aes256-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#tripledes-cbc"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep"/>
<md:EncryptionMethod Algorithm="http://www.w3.org/2001/04/xmlenc#rsa-oaep-mgf1p"/>
</md:KeyDescriptor>
<md:ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://graylog-dev.cert.sunet.se/Shibboleth.sso/Artifact/SOAP" index="1"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://graylog-dev.cert.sunet.se/Shibboleth.sso/SLO/SOAP"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://graylog-dev.cert.sunet.se/Shibboleth.sso/SLO/Redirect"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://graylog-dev.cert.sunet.se/Shibboleth.sso/SLO/POST"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://graylog-dev.cert.sunet.se/Shibboleth.sso/SLO/Artifact"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://graylog-dev.cert.sunet.se/Shibboleth.sso/SAML2/POST" index="1"/>
</md:SPSSODescriptor>
</md:EntityDescriptor>