saml-response-idp-desa-nov2015.xml

Assertion SAML emitida por IdP Udelar. - Emilio Penna, Martes, 5 de Enero de 2016 12:54:17 -0300

Descargar (11,8 KB)

 
1
2
3
<saml2p:Response Destination="https://sp1.seciu.edu.uy/Shibboleth.sso/SAML2/POST"
4
                 ID="_34e650dfc03e578989d62977c78b4cef"
5
                 InResponseTo="_31d291a274fb67aa740b111f021257d3"
6
                 IssueInstant="2015-11-12T19:57:06.143Z"
7
                 Version="2.0"
8
                 xmlns:saml2p="urn:oasis:names:tc:SAML:2.0:protocol"
9
                 xmlns:xsd="http://www.w3.org/2001/XMLSchema"
10
                 >
11
    <saml2:Issuer xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion">https://idp1.seciu.edu.uy/idp/shibboleth</saml2:Issuer>
12
    <ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
13
        <ds:SignedInfo>
14
            <ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" />
15
            <ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha512" />
16
            <ds:Reference URI="#_34e650dfc03e578989d62977c78b4cef">
17
                <ds:Transforms>
18
                    <ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature" />
19
                    <ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#">
20
                        <ec:InclusiveNamespaces PrefixList="xsd"
21
                                                xmlns:ec="http://www.w3.org/2001/10/xml-exc-c14n#"
22
                                                />
23
                    </ds:Transform>
24
                </ds:Transforms>
25
                <ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha512" />
26
                <ds:DigestValue>YB4kDopx4MViQszn57J7JdLZeie4+zRpXQVcRB+jhxoh9ADA0vGD4QMU7NX6KStvndYkZ/ybltOi
27
XQ6A5U11fw==</ds:DigestValue>
28
            </ds:Reference>
29
        </ds:SignedInfo>
30
        <ds:SignatureValue>
31
cBqBK9TwUv+NXz9W0QaK/JHCaYxHqg3SECXesjmliHTyXfTVo+bN4b6fy+85ngnWLuzZjy69hH5l
32
qYYmuFhbSZcWqUsJB4mvB69j+pi/fwXlSGViKdxqKq11q9gkGNuWrfTgTH+vRnpcDOv31sqnHR4p
33
6/FeCW9EI0fdPMJIEjotGoq1MUnzJLVj2sdZIAFb0NrCckKXRUBsxUNhP1bR5I4F8tFZ0yYLSz6p
34
ivIri8b3EFeWkx8irWlS72p4YlYgkFHMTXURCBd/h2/aXuxkNKQ/qQnPAsUQbrQCGZCZyus6P8fR
35
ZYPzgQQo46Zd3OIVbnlZoWMhxyRrqg+291gUhw==
36
</ds:SignatureValue>
37
        <ds:KeyInfo>
38
            <ds:X509Data>
39
                <ds:X509Certificate>MIIDLzCCAhegAwIBAgIUbviVhz1Lgip/s6APvldHsUVfiRgwDQYJKoZIhvcNAQELBQAwHDEaMBgG
40
A1UEAwwRaWRwMS5zZWNpdS5lZHUudXkwHhcNMTUxMDI5MTk0NDI1WhcNMzUxMDI5MTk0NDI1WjAc
41
MRowGAYDVQQDDBFpZHAxLnNlY2l1LmVkdS51eTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
42
ggEBAL51GksGTsqf0yhCvKDFsnrTM7xDhsU6L5nIxHZBGe4n9evjtiUqKYQE/ldCdtJWmzSsSeLb
43
tzbsLH7ReX2POYBTfw1i/koXp+TdFfXtIVYMI1T8gEORFrrv8g8X72TlLonG7iik5X9xs1SVB5/P
44
smtkBPJ0NO/OOdd1eDNOfO+H/Zl9iTCrmSOwxNqcA+7nNxabGOAOhCcV6jroOf4MjVswWUSHinqz
45
k7Mu2G2Q7780wjXpTly5g6jCdm8y9NjX9ca+/mcS9BsgncHjKaqAKv5iHvs5AFO1vtBd+DugSHdV
46
fXVX6usQWr6bWnesGnUOHEsQ9q0YkVzrgEi5XCcPQQkCAwEAAaNpMGcwHQYDVR0OBBYEFI4JBZos
47
bqFup0aRWJ7PYZRn0dG+MEYGA1UdEQQ/MD2CEWlkcDEuc2VjaXUuZWR1LnV5hihodHRwczovL2lk
48
cDEuc2VjaXUuZWR1LnV5L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCI07QaSxC4
49
eAR+ohQsDDv5HVGfDsn8ZQwiNhz7rVD22A5ybQcZSt+jaFDVrNB5g6gYZHvuncmBF1QXkwBTf0E/
50
bNLDKyyf8EYMC85G5YO8Cbb+46bctjg2lyl29qufYUIZR4dvz3LPn3kRhomLjXFn1rvLOHoGTJGm
51
dpOSLaBK+HzijmKLmoHtUBY++S/3W3DCqTR4vLo/d8S9vQVlUOlXEkkS72U90Vjw90CnZeX4yXGY
52
v9+zhlOzVG4HwtfjuSMkL/Z4djcAavnCRBIjmB9+8dQ+6lffjOsxa61wjBGWP+nnngD+Kk8PHRpM
53
hNZg4D5+3JpyTkoIBwT4Twnoq7gD</ds:X509Certificate>
54
            </ds:X509Data>
55
        </ds:KeyInfo>
56
    </ds:Signature>
57
    <saml2p:Status>
58
        <saml2p:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success" />
59
    </saml2p:Status>
60
    <saml2:Assertion ID="_49130de64084c383b1959f2f5806325b"
61
                     IssueInstant="2015-11-12T19:57:06.143Z"
62
                     Version="2.0"
63
                     xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion"
64
                     >
65
        <saml2:Issuer>https://idp1.seciu.edu.uy/idp/shibboleth</saml2:Issuer>
66
        <saml2:Subject>
67
            <saml2:NameID Format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent"
68
                          NameQualifier="https://idp1.seciu.edu.uy/idp/shibboleth"
69
                          SPNameQualifier="https://sp1.seciu.edu.uy/shibboleth"
70
                          >qLEq7Ay684U+mCczMUjAGdgC4kw=</saml2:NameID>
71
            <saml2:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer">
72
                <saml2:SubjectConfirmationData Address="10.0.2.2"
73
                                               InResponseTo="_31d291a274fb67aa740b111f021257d3"
74
                                               NotOnOrAfter="2015-11-12T20:02:06.265Z"
75
                                               Recipient="https://sp1.seciu.edu.uy/Shibboleth.sso/SAML2/POST"
76
                                               />
77
            </saml2:SubjectConfirmation>
78
        </saml2:Subject>
79
        <saml2:Conditions NotBefore="2015-11-12T19:57:06.143Z"
80
                          NotOnOrAfter="2015-11-12T20:02:06.143Z"
81
                          >
82
            <saml2:AudienceRestriction>
83
                <saml2:Audience>https://sp1.seciu.edu.uy/shibboleth</saml2:Audience>
84
            </saml2:AudienceRestriction>
85
        </saml2:Conditions>
86
        <saml2:AuthnStatement AuthnInstant="2015-11-12T19:57:05.293Z"
87
                              SessionIndex="_d1421b162f9e946b066da86c80a8f1f7"
88
                              >
89
            <saml2:SubjectLocality Address="10.0.2.2" />
90
            <saml2:AuthnContext>
91
                <saml2:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport</saml2:AuthnContextClassRef>
92
            </saml2:AuthnContext>
93
        </saml2:AuthnStatement>
94
        <saml2:AttributeStatement>
95
            <saml2:Attribute FriendlyName="uid"
96
                             Name="urn:oid:0.9.2342.19200300.100.1.1"
97
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
98
                             >
99
                <saml2:AttributeValue>UY-DO-10000001</saml2:AttributeValue>
100
            </saml2:Attribute>
101
            <saml2:Attribute FriendlyName="mail"
102
                             Name="urn:oid:0.9.2342.19200300.100.1.3"
103
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
104
                             >
105
                <saml2:AttributeValue>emilio.penna@seciu.edu.uy</saml2:AttributeValue>
106
            </saml2:Attribute>
107
            <saml2:Attribute FriendlyName="eduPersonAffiliation"
108
                             Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1"
109
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
110
                             >
111
                <saml2:AttributeValue>member</saml2:AttributeValue>
112
                <saml2:AttributeValue>staff</saml2:AttributeValue>
113
                <saml2:AttributeValue>student</saml2:AttributeValue>
114
            </saml2:Attribute>
115
            <saml2:Attribute FriendlyName="eduPersonPrincipalName"
116
                             Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6"
117
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
118
                             >
119
                <saml2:AttributeValue>12345001@udelar.edu.uy</saml2:AttributeValue>
120
            </saml2:Attribute>
121
            <saml2:Attribute FriendlyName="udelarPersonNombre2"
122
                             Name="urn:oid:2.16.858.2.10005082.0.1.2.1.1"
123
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
124
                             >
125
                <saml2:AttributeValue>PruebaNom2</saml2:AttributeValue>
126
            </saml2:Attribute>
127
            <saml2:Attribute FriendlyName="udelarPersonNombre1"
128
                             Name="urn:oid:2.16.858.2.10005082.0.1.2.1.0"
129
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
130
                             >
131
                <saml2:AttributeValue>PruebaNom1</saml2:AttributeValue>
132
            </saml2:Attribute>
133
            <saml2:Attribute FriendlyName="eduPersonScopedAffiliation"
134
                             Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9"
135
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
136
                             >
137
                <saml2:AttributeValue>staff@udelar.edu.uy</saml2:AttributeValue>
138
                <saml2:AttributeValue>student@udelar.edu.uy</saml2:AttributeValue>
139
                <saml2:AttributeValue>member@udelar.edu.uy</saml2:AttributeValue>
140
            </saml2:Attribute>
141
            <saml2:Attribute FriendlyName="udelarPersonAffiliation"
142
                             Name="urn:oid:2.16.858.2.10005082.0.1.2.1.6"
143
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
144
                             >
145
                <saml2:AttributeValue>student@06</saml2:AttributeValue>
146
                <saml2:AttributeValue>staff@01</saml2:AttributeValue>
147
            </saml2:Attribute>
148
            <saml2:Attribute FriendlyName="schacHomeOrganizationType"
149
                             Name="urn:oid:1.3.6.1.4.1.25178.1.2.10"
150
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
151
                             >
152
                <saml2:AttributeValue xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
153
                                      xsi:type="xsd:string"
154
                                      >urn:schac:homeOrganizationType:int:higherEducationInstitution</saml2:AttributeValue>
155
            </saml2:Attribute>
156
            <saml2:Attribute FriendlyName="schacHomeOrganization"
157
                             Name="urn:oid:1.3.6.1.4.1.25178.1.2.9"
158
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
159
                             >
160
                <saml2:AttributeValue xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
161
                                      xsi:type="xsd:string"
162
                                      >udelar.edu.uy</saml2:AttributeValue>
163
            </saml2:Attribute>
164
            <saml2:Attribute FriendlyName="udelarPersonApellido1"
165
                             Name="urn:oid:2.16.858.2.10005082.0.1.2.1.2"
166
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
167
                             >
168
                <saml2:AttributeValue>PruebaApe1</saml2:AttributeValue>
169
            </saml2:Attribute>
170
            <saml2:Attribute FriendlyName="commonName"
171
                             Name="urn:oid:2.5.4.3"
172
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
173
                             >
174
                <saml2:AttributeValue>PruebaNom1 PruebaNom2 PruebaApe1 PruebaApe2</saml2:AttributeValue>
175
            </saml2:Attribute>
176
            <saml2:Attribute FriendlyName="udelarPersonApellido2"
177
                             Name="urn:oid:2.16.858.2.10005082.0.1.2.1.3"
178
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
179
                             >
180
                <saml2:AttributeValue>PruebaApe2</saml2:AttributeValue>
181
            </saml2:Attribute>
182
            <saml2:Attribute FriendlyName="displayName"
183
                             Name="urn:oid:2.16.840.1.113730.3.1.241"
184
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
185
                             >
186
                <saml2:AttributeValue>PruebaNom1 PruebaApe1</saml2:AttributeValue>
187
            </saml2:Attribute>
188
            <saml2:Attribute FriendlyName="udelarPersonTipoValidacion"
189
                             Name="urn:oid:2.16.858.2.10005082.0.1.2.1.9"
190
                             NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
191
                             >
192
                <saml2:AttributeValue>presencial</saml2:AttributeValue>
193
            </saml2:Attribute>
194
        </saml2:AttributeStatement>
195
    </saml2:Assertion>
196
</saml2p:Response>
197