1 line
14 KiB
XML
Executable File
1 line
14 KiB
XML
Executable File
<?xml version="1.0" encoding="utf-8"?><EntityDescriptor ID="_4441df45-590a-4421-a490-d16e02ab6364" entityID="https://sts.windows.net/84750c4c-1e54-4d6d-9d5f-c395e8b1faf2/" xmlns="urn:oasis:names:tc:SAML:2.0:metadata"><Signature xmlns="http://www.w3.org/2000/09/xmldsig#"><SignedInfo><CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" /><SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256" /><Reference URI="#_4441df45-590a-4421-a490-d16e02ab6364"><Transforms><Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature" /><Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" /></Transforms><DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256" /><DigestValue>mfYW8CoOR6EeXxWALpIp5oeNqFse0T4Y9QnWgl6ckDo=</DigestValue></Reference></SignedInfo><SignatureValue>HOoSthKFXRDCPJFXphOY9LErG/HFPZQyjxoF/79+PutImedmB80p9gL1tyyPH2NSS+onU7TZy2yG4xyfrwMLq/n9stmSFzqEx30/weMwx4ji7J03+kByE5pHjPH1k3Am2JXbvJH34pIyhmVzAmDKzboli21jiiyayashGuqPSytzqFST7K7ktpTUwZsxaZd1NiQnk4o7Iy9Oyw/b20RD8cy/yl2V4G4ccc1MrN7udglA3JKdwH8167nA/lgQTSJixV+ymFvol1LrD60rAGIm2fNDuUkZshV48K4MhqZP1lz8ybcp7K13itQCTVG6fzfN3XmJB23zXzwTAM29FxWemA==</SignatureValue><ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"><ds:X509Data><ds:X509Certificate>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</ds:X509Certificate></ds:X509Data></ds:KeyInfo></Signature><RoleDescriptor xsi:type="fed:SecurityTokenServiceType" protocolSupportEnumeration="http://docs.oasis-open.org/wsfed/federation/200706" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:fed="http://docs.oasis-open.org/wsfed/federation/200706"><KeyDescriptor use="signing"><KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#"><X509Data><X509Certificate>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</X509Certificate></X509Data></KeyInfo></KeyDescriptor><fed:ClaimTypesOffered><auth:ClaimType Uri="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Name</auth:DisplayName><auth:Description>The mutable display name of the user.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/nameidentifier" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Subject</auth:DisplayName><auth:Description>An immutable, globally unique, non-reusable identifier of the user that is unique to the application for which a token is issued.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/givenname" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Given Name</auth:DisplayName><auth:Description>First name of the user.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/surname" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Surname</auth:DisplayName><auth:Description>Last name of the user.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/identity/claims/displayname" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Display Name</auth:DisplayName><auth:Description>Display name of the user.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/identity/claims/nickname" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Nick Name</auth:DisplayName><auth:Description>Nick name of the user.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/ws/2008/06/identity/claims/authenticationinstant" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Authentication Instant</auth:DisplayName><auth:Description>The time (UTC) when the user is authenticated to Windows Azure Active Directory.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/ws/2008/06/identity/claims/authenticationmethod" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Authentication Method</auth:DisplayName><auth:Description>The method that Windows Azure Active Directory uses to authenticate users.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/identity/claims/objectidentifier" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>ObjectIdentifier</auth:DisplayName><auth:Description>Primary identifier for the user in the directory. Immutable, globally unique, non-reusable.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/identity/claims/tenantid" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>TenantId</auth:DisplayName><auth:Description>Identifier for the user's tenant.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/identity/claims/identityprovider" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>IdentityProvider</auth:DisplayName><auth:Description>Identity provider for the user.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Email</auth:DisplayName><auth:Description>Email address of the user.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/ws/2008/06/identity/claims/groups" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Groups</auth:DisplayName><auth:Description>Groups of the user.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/identity/claims/accesstoken" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>External Access Token</auth:DisplayName><auth:Description>Access token issued by external identity provider.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/ws/2008/06/identity/claims/expiration" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>External Access Token Expiration</auth:DisplayName><auth:Description>UTC expiration time of access token issued by external identity provider.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/identity/claims/openid2_id" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>External OpenID 2.0 Identifier</auth:DisplayName><auth:Description>OpenID 2.0 identifier issued by external identity provider.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/claims/groups.link" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>GroupsOverageClaim</auth:DisplayName><auth:Description>Issued when number of user's group claims exceeds return limit.</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/ws/2008/06/identity/claims/role" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>Role Claim</auth:DisplayName><auth:Description>Roles that the user or Service Principal is attached to</auth:Description></auth:ClaimType><auth:ClaimType Uri="http://schemas.microsoft.com/ws/2008/06/identity/claims/wids" xmlns:auth="http://docs.oasis-open.org/wsfed/authorization/200706"><auth:DisplayName>RoleTemplate Id Claim</auth:DisplayName><auth:Description>Role template id of the Built-in Directory Roles that the user is a member of</auth:Description></auth:ClaimType></fed:ClaimTypesOffered><fed:SecurityTokenServiceEndpoint><wsa:EndpointReference xmlns:wsa="http://www.w3.org/2005/08/addressing"><wsa:Address>https://login.microsoftonline.com/84750c4c-1e54-4d6d-9d5f-c395e8b1faf2/wsfed</wsa:Address></wsa:EndpointReference></fed:SecurityTokenServiceEndpoint><fed:PassiveRequestorEndpoint><wsa:EndpointReference xmlns:wsa="http://www.w3.org/2005/08/addressing"><wsa:Address>https://login.microsoftonline.com/84750c4c-1e54-4d6d-9d5f-c395e8b1faf2/wsfed</wsa:Address></wsa:EndpointReference></fed:PassiveRequestorEndpoint></RoleDescriptor><RoleDescriptor xsi:type="fed:ApplicationServiceType" protocolSupportEnumeration="http://docs.oasis-open.org/wsfed/federation/200706" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:fed="http://docs.oasis-open.org/wsfed/federation/200706"><KeyDescriptor use="signing"><KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#"><X509Data><X509Certificate>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</X509Certificate></X509Data></KeyInfo></KeyDescriptor><fed:TargetScopes><wsa:EndpointReference xmlns:wsa="http://www.w3.org/2005/08/addressing"><wsa:Address>https://sts.windows.net/84750c4c-1e54-4d6d-9d5f-c395e8b1faf2/</wsa:Address></wsa:EndpointReference></fed:TargetScopes><fed:ApplicationServiceEndpoint><wsa:EndpointReference xmlns:wsa="http://www.w3.org/2005/08/addressing"><wsa:Address>https://login.microsoftonline.com/84750c4c-1e54-4d6d-9d5f-c395e8b1faf2/wsfed</wsa:Address></wsa:EndpointReference></fed:ApplicationServiceEndpoint><fed:PassiveRequestorEndpoint><wsa:EndpointReference xmlns:wsa="http://www.w3.org/2005/08/addressing"><wsa:Address>https://login.microsoftonline.com/84750c4c-1e54-4d6d-9d5f-c395e8b1faf2/wsfed</wsa:Address></wsa:EndpointReference></fed:PassiveRequestorEndpoint></RoleDescriptor><IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"><KeyDescriptor use="signing"><KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#"><X509Data><X509Certificate>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</X509Certificate></X509Data></KeyInfo></KeyDescriptor><SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/84750c4c-1e54-4d6d-9d5f-c395e8b1faf2/saml2" /><SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.microsoftonline.com/84750c4c-1e54-4d6d-9d5f-c395e8b1faf2/saml2" /><SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.microsoftonline.com/84750c4c-1e54-4d6d-9d5f-c395e8b1faf2/saml2" /></IDPSSODescriptor></EntityDescriptor> |