Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Metadata updates are announced to the Identity and Service Provider administrators. Metadata updates should be deployed within 24 hours of its release. Therefore it is recommended that metadata is updated automatically.

Haka-metadata

Selitys Osoite/Linkki
Haka Metadatametadata.xml
Haka metadata signing certificate starting from 12.7.2023
v2
Attribute filter for Shibboleth IdPattribute-filter.xml
Attribute filter md5 hashmdsum.afp

Metadata verification

The metadata files have a XML signature to make it possible to verify that they are genuine. You can find the certificate (haka-sign.csc.fi.pem) from above. MD5-sums of the metadata files are also provided. You can check them e.g. by using md5sum tool.

For further information please contact Haka helpdesk.

Authenticity of the metadata MUST be verified before using. The certificate to check the authenticity can be found on this page. Also the validity of the metadata MUST be verified. Expired metadata MUST NOT be used. 

Info

Using HTTPS-URL is not sufficient way to ensure metadata authenticity. Authenticity can be assured verified only by checking XML-signature of the metadata.

...