Skip to Content.
Sympa Menu

metadata-diff - [METADATA-DIFF] Production-Production Diff

Subject: InCommon Metadata Diff List

List archive

[METADATA-DIFF] Production-Production Diff


Chronological Thread 
  • From: InCommon Operations <>
  • To:
  • Subject: [METADATA-DIFF] Production-Production Diff
  • Date: Mon, 24 Jul 2023 19:18:54 +0000 (UTC)

The following diff compares the current production metadata with the
previously issued version of the production metadata. It is also at
https://wayf.incommonfederation.org/metadata-diff/prod-prod/prod-prod-1690226327-validUntil.2023-08-07T19.07.38Z.diff

diff --git a/InCommon-metadata.xml b/InCommon-metadata.xml
index 9db8f72..5ad951c 100644
--- a/InCommon-metadata.xml
+++ b/InCommon-metadata.xml
@@ -1,8 +1,8 @@
-<?xml version="1.0" encoding="UTF-8"?><EntitiesDescriptor
xmlns="urn:oasis:names:tc:SAML:2.0:metadata"
xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"
xmlns:ds="http://www.w3.org/2000/09/xmldsig#";
xmlns:icmd="http://id.incommon.org/metadata";
xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol"
xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init"
xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"
xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi"
xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"
xmlns:remd="http://refeds.org/metadata";
xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
xmlns:shibmd="urn:mace:shibboleth:metadata:1.0"
xmlns:xenc="http://www.w3.org/2001/04/xmlenc#";
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"; ID="INC20230721T183740"
Name="urn:mace:incommon" validUntil="2023-08-04T18:37:40Z"><Signature
xmlns="http://www.w3.org/2000/09/xmldsig#";><SignedInfo><CanonicalizationMethod
Algorithm="http://www.w3.org/2001/10/
xml-exc-c14n#"/><SignatureMethod
Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/><Reference
URI="#INC20230721T183740"><Transforms><Transform
Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></Transforms><DigestMethod

Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/><DigestValue>NJnLWwF3iftk6SQz5IqdQxaLavj0UtaSS32QtpzROSA=</DigestValue></Reference></SignedInfo><SignatureValue>H9w3eih4kWe0oCuOpXABzdeKYhKyUwIOeFyrsjju9y9z9qBSXvInQSfut46PqKffaKTHl/JsTFSH&#13;
-vdmY5KvJXd/6p2/MfyvB8GvHO/D+oQEiH2Yv2nce2EmwdZizI/qBK0shXIwTIJHf93EDpAYKXUoR&#13;
-QNgTykGnhgfwHuJeE34B7FUL7FxUS11ntRexyCr0woQzYB09H+zbu1xu6/S8GB3WPtBJiPIssImt&#13;
-7XmRhU4/1Cnc8uCqu3Oxd60BhJUI8649WtmseoICebjO+PIxiRTs+/uQgJvGCf5wrk/FzP+DMy0I&#13;
-aKNG8psCTABNX1shGG19sprZKR+F80kyOcUNyw==</SignatureValue><KeyInfo><X509Data><X509Certificate>MIIDgTCCAmmgAwIBAgIJAJRJzvdpkmNaMA0GCSqGSIb3DQEBCwUAMFcxCzAJBgNVBAYTAlVTMRUw&#13;
+<?xml version="1.0" encoding="UTF-8"?><EntitiesDescriptor
xmlns="urn:oasis:names:tc:SAML:2.0:metadata"
xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"
xmlns:ds="http://www.w3.org/2000/09/xmldsig#";
xmlns:icmd="http://id.incommon.org/metadata";
xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol"
xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init"
xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"
xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi"
xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"
xmlns:remd="http://refeds.org/metadata";
xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
xmlns:shibmd="urn:mace:shibboleth:metadata:1.0"
xmlns:xenc="http://www.w3.org/2001/04/xmlenc#";
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"; ID="INC20230724T190738"
Name="urn:mace:incommon" validUntil="2023-08-07T19:07:38Z"><Signature
xmlns="http://www.w3.org/2000/09/xmldsig#";><SignedInfo><CanonicalizationMethod
Algorithm="http://www.w3.org/2001/10/
xml-exc-c14n#"/><SignatureMethod
Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/><Reference
URI="#INC20230724T190738"><Transforms><Transform
Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></Transforms><DigestMethod

Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/><DigestValue>R0niR47NJKEjoxQRqHDZ/WGHUkKLbRrnJXHoo/OrKmo=</DigestValue></Reference></SignedInfo><SignatureValue>FoHtQjhFXcEF62hbu2uE/dBEFsoOiUAuhifWr66iWiAEZwB+yvKfZwG2Zc9VONL0cAIUulj0QknO&#13;
+Jzfblqbku6kITjVx3zux5YCnCM8p50HUnMjaryFUCl085qKerEYRs5bQLrQ5/WEDltNA2YQXrsOO&#13;
+VCotvScwCNAUnFH2lwpLlFQ8cQxQLQ4kNy5NkY0y3n3Sov0J3H41rn85IL8IDiVaa/oltdK4diFO&#13;
+kc30Gl3eD/qKTEEwiwVTNPXHH7h/Yv2yCvjyUAH6OowWUcDtswhdOm77V/Wn5fUejcKdFnXVYO7n&#13;
+vQiyfeZ1li/qqXi4tMcx/XyT4bUIqGJoUGLu6Q==</SignatureValue><KeyInfo><X509Data><X509Certificate>MIIDgTCCAmmgAwIBAgIJAJRJzvdpkmNaMA0GCSqGSIb3DQEBCwUAMFcxCzAJBgNVBAYTAlVTMRUw&#13;

EwYDVQQKDAxJbkNvbW1vbiBMTEMxMTAvBgNVBAMMKEluQ29tbW9uIEZlZGVyYXRpb24gTWV0YWRh&#13;

dGEgU2lnbmluZyBLZXkwHhcNMTMxMjE2MTkzNDU1WhcNMzcxMjE4MTkzNDU1WjBXMQswCQYDVQQG&#13;

EwJVUzEVMBMGA1UECgwMSW5Db21tb24gTExDMTEwLwYDVQQDDChJbkNvbW1vbiBGZWRlcmF0aW9u&#13;
@@ -19,7 +19,7 @@
qEbjhBFh/utXaeyeSOtaX65GwD5svDHnJBclAGkzeRIXqxmYG+I2zMm/JYGzEnbwToyC7yF6Q8cQ&#13

xOr37hEpqz+WN/x3qM2qyBLECQFjmlJrvRLkSL15PCZiu+xFNFd/zx6btDun5DBlfDS9DG+SHCNH&#13;

6Nq+NfP+ZQ8CGzP/3TaZPzMlKPDCjp0XOQfyQqFIXdwjPFTWjEusDBlm4qJAlQ==</X509Certificate></X509Data></KeyInfo></Signature>
<Extensions>
- <mdrpi:PublicationInfo creationInstant="2023-07-21T18:37:40Z"
publisher="https://incommon.org"/>
+ <mdrpi:PublicationInfo creationInstant="2023-07-24T19:07:38Z"
publisher="https://incommon.org"/>
</Extensions>
<EntityDescriptor entityID="https://authproxy.conity.com/saml2";>
<Extensions>
@@ -16308,6 +16308,66 @@
eXoKuJhDmBZ7guw2keo/i72mAdG8CYXwgX8LjZ7k1+JHDP/bEOWACU8bQA==
<EmailAddress></EmailAddress>
</ContactPerson>
</EntityDescriptor>
+<EntityDescriptor entityID="https://uconline.ucop.edu";>
+ <Extensions>
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes>
+ <saml:Attribute
Name="urn:oasis:names:tc:SAML:attribute:assurance-certification"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category";
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+
<saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor
protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">UC Online Proxy Service
Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Proxy Service Provider for UC
Online</mdui:Description>
+ <mdui:PrivacyStatementURL
xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80"
xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15
19:01:56 2028 GMT -->
+ <ds:X509Certificate>
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

ASEw6ZhABMoUgA+XxNkFc5rJDz6leNBCpPd3LtTsi0llCLoc//4AMxo+3zqnUFSh7rBCqjSiHxWFuZiM3vQSKGn/hD9H5Vm/5MfAiCpvmGmrSSbSZ3VZ09P5LifraNwfw66Lpm6JLtr84nC5fMksl1+0W6LJMCHHrVR3iDIOh4oc1rXkqg2HUVTBWcFZB5FPa6uVp4Rfjmn5SF5rAGSvjjHKHBg579PJGCFn/GAdgCyquXGzNRSNw/AiDekXjszH2F2CwIrpuwwbPCxOQ9EjH7nWsereXoKuJhDmBZ7guw2keo/i72mAdG8CYXwgX8LjZ7k1+JHDP/bEOWACU8bQA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ <EncryptionMethod
Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
+ </KeyDescriptor>
+ <AssertionConsumerService
Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/UCOnline";
index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">UC Online Proxy Service
Provider</ServiceName>
+ <ServiceDescription xml:lang="en">Proxy Service Provider for UC
Online</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName"
Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation"
Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the
President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office
of the President</OrganizationDisplayName>
+ <OrganizationURL
xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress></EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress></EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="other"
remd:contactType="http://refeds.org/metadata/contactType/security";>
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress></EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
<EntityDescriptor entityID="https://ucpathpmojiradev.ucop.edu/sp";>
<Extensions>
<mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
@@ -121319,24 +121379,45 @@
DvoszRsTTKZLYbNvWoo8BZMCxK5tQ6EqNyQTmekHxw+peNCaQ+nDKw==
<KeyDescriptor>
<ds:KeyInfo>
<ds:X509Data>
- <!-- Serial No. 12640021451372391307, expires on Fri Aug 4
04:11:22 2023 GMT -->
+ <!-- Serial No. 17203729740896092966854497372893951400, expires on
Wed Mar 20 23:59:59 2024 GMT -->
.
.
.
The complete diff is available here:
https://wayf.incommonfederation.org/metadata-diff/prod-prod/prod-prod-1690226327-validUntil.2023-08-07T19.07.38Z.diff

An archive of this and past prod-prod diffs is available here:
https://wayf.incommonfederation.org/metadata-diff/prod-prod/?C=M;O=D

This is a one-way, notification only email list. If you have questions,
please email . You can also discuss related issues
with the community on .

- InCommon Federation Operations




Archive powered by MHonArc 2.6.24.

Top of Page