metadata-diff - [METADATA-DIFF] Production-Production Diff
Subject: InCommon Metadata Diff List
List archive
- From: InCommon Operations <>
- To:
- Subject: [METADATA-DIFF] Production-Production Diff
- Date: Wed, 26 Feb 2025 20:15:04 +0000 (UTC)
The following diff compares the current production metadata with the
previously issued version of the production metadata. It is also at
https://wayf.incommonfederation.org/metadata-diff/prod-prod/prod-prod-1740600899-validUntil.2025-03-12T20.04.15Z.diff
diff --git a/InCommon-metadata.xml b/InCommon-metadata.xml
index 16d9048..3806d06 100644
--- a/InCommon-metadata.xml
+++ b/InCommon-metadata.xml
@@ -1,8 +1,8 @@
-<?xml version="1.0" encoding="UTF-8" standalone="no"?><EntitiesDescriptor
xmlns="urn:oasis:names:tc:SAML:2.0:metadata"
xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"
xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
xmlns:icmd="http://id.incommon.org/metadata"
xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol"
xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init"
xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"
xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi"
xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"
xmlns:remd="http://refeds.org/metadata"
xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
xmlns:shibmd="urn:mace:shibboleth:metadata:1.0"
xmlns:xenc="http://www.w3.org/2001/04/xmlenc#"
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="INC20250225T202519"
Name="urn:mace:incommon" validUntil="2025-03-11T20:25:19Z"><Signature
xmlns="http://www.w3.org/2000/09/xmldsig#"><SignedInfo><CanonicalizationMethod
Algorithm="http://www
.w3.org/2001/10/xml-exc-c14n#"/><SignatureMethod
Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/><Reference
URI="#INC20250225T202519"><Transforms><Transform
Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></Transforms><DigestMethod
Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/><DigestValue>W0a5HsdlM95YjvtL8xkt6XvdIbcEiEC0xjr8NgkWxo0=</DigestValue></Reference></SignedInfo><SignatureValue>SFsy8gsBkt9E+tRbBLWa6fh9mTQJhL8A07cWBOOWjW1ml91zs4gBCEeQJ942WBrSFgIS0/2YAXeA
-KY3rdkBHcVDP7kMTNbbgtzjePUsmMdKdZQ5WTYLPHzX5pd2oLQn7IO7k1Ge6Cj9F+Gdm9U8twJy5
-d1TkOjJE9EN79uQ6hApF/xiKTOhnGgtxx1ERWeDyN68+byED4VfmDojW/xAd2FsERjeRw9Apa8wd
-DTBFLREG7z3gQ8KTSw3722yySFMJcY8nPWl7q8Ofnqse8r7NDWX2UTKwtZ1c3AOSao9LnX+KICNV
-lbRILt2eujeWUBs0cel0ROu8a0alkGbV7wJK6Q==</SignatureValue><KeyInfo><X509Data><X509Certificate>MIIDgTCCAmmgAwIBAgIJAJRJzvdpkmNaMA0GCSqGSIb3DQEBCwUAMFcxCzAJBgNVBAYTAlVTMRUw
+<?xml version="1.0" encoding="UTF-8" standalone="no"?><EntitiesDescriptor
xmlns="urn:oasis:names:tc:SAML:2.0:metadata"
xmlns:alg="urn:oasis:names:tc:SAML:metadata:algsupport"
xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
xmlns:icmd="http://id.incommon.org/metadata"
xmlns:idpdisc="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol"
xmlns:init="urn:oasis:names:tc:SAML:profiles:SSO:request-init"
xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute"
xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi"
xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"
xmlns:remd="http://refeds.org/metadata"
xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
xmlns:shibmd="urn:mace:shibboleth:metadata:1.0"
xmlns:xenc="http://www.w3.org/2001/04/xmlenc#"
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="INC20250226T200415"
Name="urn:mace:incommon" validUntil="2025-03-12T20:04:15Z"><Signature
xmlns="http://www.w3.org/2000/09/xmldsig#"><SignedInfo><CanonicalizationMethod
Algorithm="http://www
.w3.org/2001/10/xml-exc-c14n#"/><SignatureMethod
Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/><Reference
URI="#INC20250226T200415"><Transforms><Transform
Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><Transform
Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></Transforms><DigestMethod
Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/><DigestValue>WEig01MKgXVIFiPYmVlRM70JJgI05HtVjql8mrE8G3c=</DigestValue></Reference></SignedInfo><SignatureValue>y+MZQLPT/Hxb52TYeE3Ph9Kk9Xo7Q9xvYVXUbveVygA6OMfc4/PU+1meLxpV5ecQiceHkt4KadO2
+CB8lEyEB19GsH6jRQRmzYKgiR40tuGe+Y+qjHYFblfITDxr7WAkiTNfMmndPC3fjlZIzPJ8/nBjV
+iywGUToU321Ztp425VmOhGuTpUu4RN2SUs6YLwpY/PLhh9Edic2pzVTnmauQrMQL7OvGzizfmNS4
+Y0jCBcgeeWlzydSb8jeCRipNlBaDbDbHQTCg8wji3G4Cu69JiRdt+6x/LWZbSm7X/mvcSohTritC
+DEsGSNW/Ygsrmq2F51SYcoIzmRZNWh2hJWoChA==</SignatureValue><KeyInfo><X509Data><X509Certificate>MIIDgTCCAmmgAwIBAgIJAJRJzvdpkmNaMA0GCSqGSIb3DQEBCwUAMFcxCzAJBgNVBAYTAlVTMRUw
EwYDVQQKDAxJbkNvbW1vbiBMTEMxMTAvBgNVBAMMKEluQ29tbW9uIEZlZGVyYXRpb24gTWV0YWRh
dGEgU2lnbmluZyBLZXkwHhcNMTMxMjE2MTkzNDU1WhcNMzcxMjE4MTkzNDU1WjBXMQswCQYDVQQG
EwJVUzEVMBMGA1UECgwMSW5Db21tb24gTExDMTEwLwYDVQQDDChJbkNvbW1vbiBGZWRlcmF0aW9u
@@ -19,7 +19,7 @@
qEbjhBFh/utXaeyeSOtaX65GwD5svDHnJBclAGkzeRIXqxmYG+I2zMm/JYGzEnbwToyC7yF6Q8cQ
xOr37hEpqz+WN/x3qM2qyBLECQFjmlJrvRLkSL15PCZiu+xFNFd/zx6btDun5DBlfDS9DG+SHCNH
6Nq+NfP+ZQ8CGzP/3TaZPzMlKPDCjp0XOQfyQqFIXdwjPFTWjEusDBlm4qJAlQ==</X509Certificate></X509Data></KeyInfo></Signature>
<Extensions>
- <mdrpi:PublicationInfo creationInstant="2025-02-25T20:25:19Z"
publisher="https://incommon.org"/>
+ <mdrpi:PublicationInfo creationInstant="2025-02-26T20:04:15Z"
publisher="https://incommon.org"/>
</Extensions>
<EntityDescriptor entityID="https://authproxy.conity.com/saml2">
<Extensions>
@@ -10680,6 +10680,58 @@
MIID5zCCAs+gAwIBAgIJAI4XubteXKakMA0GCSqGSIb3DQEBCwUAMIGJMQswCQYDVQQGEwJVUzETMBEG
<EmailAddress></EmailAddress>
</ContactPerson>
</EntityDescriptor>
+<EntityDescriptor entityID="https://fundriver.ucop.edu/sp">
+ <Extensions>
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes>
+ <saml:Attribute
Name="urn:oasis:names:tc:SAML:attribute:assurance-certification"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+
<saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor
protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">UCOP Fundriver Endowment
Management</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Fundriver is a financial application
used to managed UC's endowments</mdui:Description>
+ <mdui:PrivacyStatementURL
xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80"
xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15
19:01:56 2028 GMT -->
+ <ds:X509Certificate>
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
ASEw6ZhABMoUgA+XxNkFc5rJDz6leNBCpPd3LtTsi0llCLoc//4AMxo+3zqnUFSh7rBCqjSiHxWFuZiM3vQSKGn/hD9H5Vm/5MfAiCpvmGmrSSbSZ3VZ09P5LifraNwfw66Lpm6JLtr84nC5fMksl1+0W6LJMCHHrVR3iDIOh4oc1rXkqg2HUVTBWcFZB5FPa6uVp4Rfjmn5SF5rAGSvjjHKHBg579PJGCFn/GAdgCyquXGzNRSNw/AiDekXjszH2F2CwIrpuwwbPCxOQ9EjH7nWsereXoKuJhDmBZ7guw2keo/i72mAdG8CYXwgX8LjZ7k1+JHDP/bEOWACU8bQA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ <EncryptionMethod
Algorithm="http://www.w3.org/2001/04/xmlenc#aes128-cbc"/>
+ </KeyDescriptor>
+ <AssertionConsumerService
Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Fundriver"
index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the
President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office
of the President</OrganizationDisplayName>
+ <OrganizationURL
xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress></EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress></EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="other"
remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress></EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
<EntityDescriptor entityID="https://gep-uat.ucop.edu/sp">
<Extensions>
<mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
@@ -18630,8 +18682,8 @@ dZ/jSOFUlugOqCYLe+lGROe5pG+ETAq67g==
<OrganizationURL
xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
</Organization>
<ContactPerson contactType="administrative">
- <GivenName>Ed Weill</GivenName>
- <EmailAddress></EmailAddress>
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress></EmailAddress>
</ContactPerson>
<ContactPerson contactType="technical">
<GivenName>AIG</GivenName>
@@ -18745,14 +18797,14 @@ dZ/jSOFUlugOqCYLe+lGROe5pG+ETAq67g==
<OrganizationDisplayName xml:lang="en">University of California - Office
of the President</OrganizationDisplayName>
<OrganizationURL
xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
.
.
.
The complete diff is available here:
https://wayf.incommonfederation.org/metadata-diff/prod-prod/prod-prod-1740600899-validUntil.2025-03-12T20.04.15Z.diff
An archive of this and past prod-prod diffs is available here:
https://wayf.incommonfederation.org/metadata-diff/prod-prod/?C=M;O=D
This is a one-way, notification only email list. If you have questions,
please email . You can also discuss related issues
with the community on .
- InCommon Federation Operations
- [METADATA-DIFF] Production-Production Diff, (continued)
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/17/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/17/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/18/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/18/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/19/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/20/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/21/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/24/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/25/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/25/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/26/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/27/2025
- [METADATA-DIFF] Production-Production Diff, InCommon Operations, 02/28/2025
Archive powered by MHonArc 2.6.24.