Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Code Block
titleshibboleth IdP, relying-party.xml
.
.
<MetadataProvider type="Chaining">
    <!-- Haka metadata --> 
    <MetadataProvider type="XML" uriurl="https://haka.funet.fi/metadata/haka-metadata.xml"
                      backingFilePath="/path/to/backup/backingFiles/haka-metadata.xml"
                      reloadInterval="72003600">
        <SignatureMetadataFilter <MetadataFilter type="Signature" certificate="/pathetc/pki/totls/certcerts/haka-sign-v2v5.pem"/>
  <MetadataFilter  </MetadataProvider>
    type="RequireValidUntil" maxValidityInterval="2592000"/>
  <MetadataFilter type="EntityRoleWhiteList">
    <RetainedRole xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">md:IDPSSODescriptor</RetainedRole>
  </MetadataFilter>
</MetadataProvider>

<!-- eduGAIN metadata --> 
    <MetadataProvider type="XML" uriurl="https://haka.funet.fi/edugain-nightly/gen-edugain/sp-XX-metadata-eduGain.xml"
                      backingFilePath="/path/to/backup/sp-XX-metadata-eduGain.xml"
                      reloadInterval="72003600">
  <MetadataFilter      <SignatureMetadataFilter type="Signature" certificate="/etc/pathpki/totls/certcerts/haka-edugain-sign.csc.fi.2020.pem"/>
  <MetadataFilter type="RequireValidUntil" maxValidityInterval="2592000"/>
  <MetadataFilter type="EntityRoleWhiteList">
    <RetainedRole xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata">md:IDPSSODescriptor</RetainedRole>
  </MetadataProvider>MetadataFilter>
</MetadataProvider>
.
.

Embedded Discovery Service

...