Skip to content

Commit 0cc034c

Browse files
authored
Merge pull request #820 from GSA/update-login-saml-certs-2025
updates login.gov saml certs for 2025
2 parents 5556370 + 5eae87f commit 0cc034c

File tree

2 files changed

+86
-77
lines changed

2 files changed

+86
-77
lines changed

config/login.production.idp.xml

Lines changed: 65 additions & 61 deletions
Original file line numberDiff line numberDiff line change
@@ -1,64 +1,68 @@
1-
<EntityDescriptor ID="_0b686e17-e107-46b3-8805-818c1a9c13e8"
2-
xmlns="urn:oasis:names:tc:SAML:2.0:metadata"
3-
xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
4-
xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://secure.login.gov/api/saml">
5-
<ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
6-
<ds:SignedInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
7-
<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"></ds:CanonicalizationMethod>
8-
<ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"></ds:SignatureMethod>
9-
<ds:Reference URI="#_0b686e17-e107-46b3-8805-818c1a9c13e8">
10-
<ds:Transforms>
11-
<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"></ds:Transform>
12-
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"></ds:Transform>
13-
</ds:Transforms>
14-
<ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"></ds:DigestMethod>
15-
<ds:DigestValue>l+OCdxgpedzbGSgDy4fuzX06U4blZgXguhvRTnJxlPk=</ds:DigestValue>
16-
</ds:Reference>
17-
</ds:SignedInfo>
18-
<ds:SignatureValue>ZmC9igThbTZesR79Ol10L2pG/lVxE/xiuAwo1eGheLSLXeQepkedboC9aQPCN6Xs+qKth317MbO4xw8W8rfV+KL89xOeQQVTm2VtK3Q/v2pjrnNEaHmy1mAVdosUMMe0oa+3nepUON6ul28L2Tt382CGaiMP1ON7q9ChaqqZNIw4CO+X3oiYiLs5RntlXSxGt1xQEpb4LU/kW7kwl2vnywnO1p6dtoYIEUrIfLzTtMTPBzMK+oGpKl0BVszNPViqM6QJtq6Ody4N4H5JEOfIlfCbG/cosyGesZ0BRRE1ZUXYWV89c6l7qvWvB8+4D0C6nGtRbgV71cYfl30npD1AYA==</ds:SignatureValue>
19-
<KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
20-
<ds:X509Data>
21-
<ds:X509Certificate>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</ds:X509Certificate>
22-
</ds:X509Data>
23-
</KeyInfo>
24-
</ds:Signature>
25-
<IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
26-
<KeyDescriptor use="signing">
27-
<KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
28-
<X509Data>
29-
<X509Certificate>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</X509Certificate>
30-
</X509Data>
31-
</KeyInfo>
32-
</KeyDescriptor>
33-
<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
34-
<NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</NameIDFormat>
35-
<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.login.gov/api/saml/auth2024"/>
36-
<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://secure.login.gov/api/saml/auth2024"/>
37-
<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location=""/>
38-
<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location=""/>
39-
</IDPSSODescriptor>
40-
<AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
41-
<KeyDescriptor use="signing">
42-
<KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
43-
<X509Data>
44-
<X509Certificate>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</X509Certificate>
45-
</X509Data>
46-
</KeyInfo>
47-
</KeyDescriptor>
1+
<EntityDescriptor ID="_540a0f2a-f61c-4044-837d-41e78ab3a7dc"
2+
xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
3+
xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://secure.login.gov/api/saml">
4+
<ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
5+
<ds:SignedInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
6+
<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"></ds:CanonicalizationMethod>
7+
<ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"></ds:SignatureMethod>
8+
<ds:Reference URI="#_540a0f2a-f61c-4044-837d-41e78ab3a7dc">
9+
<ds:Transforms>
10+
<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"></ds:Transform>
11+
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"></ds:Transform>
12+
</ds:Transforms>
13+
<ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"></ds:DigestMethod>
14+
<ds:DigestValue>ghDI2pGH30fiivEpfkCg4mukBt1rOjfPBnpQyarUhbw=</ds:DigestValue>
15+
</ds:Reference>
16+
</ds:SignedInfo>
17+
<ds:SignatureValue>
18+
dZQWK08pRw0S2DCCC2RbwKuVkMsp9bY8kengSJN10nZFEHP5hMleCQg3Ue7A/kNuKKBsbrndqjTuk/wR5KqKoaoW8TPqRzKNFVUhdtY6lPZe2dIWeiRBhNpJlve2xvvFpoW5XEYRqGqPuhaHNxg4ZFBCN44Txmh0Jm3fnwLn7N8OTgXXL3CxCYHqi9ujuEfPzdPA7yMkuFNiv1dCWOQZqqVNV1Lns2NvlNOFZex9S6m+v1d7TNFjquFpDdBcmyII9rjOQhHC7svdIsqievSiPnHSpZrPwLY7LjMR3S/ENEm5Z51JSHj3xSkmWExUOFtqF9MD5pAV9PHQu4SM95qohg==</ds:SignatureValue>
19+
<KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
20+
<ds:X509Data>
21+
<ds:X509Certificate>
22+
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</ds:X509Certificate>
23+
</ds:X509Data>
24+
</KeyInfo>
25+
</ds:Signature>
26+
<IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
27+
<KeyDescriptor use="signing">
28+
<KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
29+
<X509Data>
30+
<X509Certificate>
31+
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</X509Certificate>
32+
</X509Data>
33+
</KeyInfo>
34+
</KeyDescriptor>
35+
<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
36+
<NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</NameIDFormat>
37+
<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
38+
Location="https://secure.login.gov/api/saml/auth2025" />
39+
<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
40+
Location="https://secure.login.gov/api/saml/auth2025" />
41+
</IDPSSODescriptor>
42+
<AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
43+
<KeyDescriptor use="signing">
44+
<KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
45+
<X509Data>
46+
<X509Certificate>
47+
MIIDzzCCAregAwIBAgIUBuxTXQhYd7UzOhO11pnNri8E5zswDQYJKoZIhvcNAQELBQAwdzELMAkGA1UEBhMCVVMxHTAbBgNVBAgMFERpc3RyaWN0IG9mIENvbHVtYmlhMRMwEQYDVQQHDApXYXNoaW5ndG9uMQwwCgYDVQQKDANHU0ExEjAQBgNVBAsMCUxvZ2luLmdvdjESMBAGA1UEAwwJbG9naW4uZ292MB4XDTI1MDExMzIwMDEzM1oXDTI2MDQwMTIwMDEzM1owdzELMAkGA1UEBhMCVVMxHTAbBgNVBAgMFERpc3RyaWN0IG9mIENvbHVtYmlhMRMwEQYDVQQHDApXYXNoaW5ndG9uMQwwCgYDVQQKDANHU0ExEjAQBgNVBAsMCUxvZ2luLmdvdjESMBAGA1UEAwwJbG9naW4uZ292MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq1mNLPlOoszuVQhW0yJKNWI7XEg776vmeaRrzGMLmenaV2tXanozBxoehNmwC7egpSCoq5PfnzQGRhZqGAsbi1FVqLmEgOlEMgKGHQ3oOoeNf7wmouOsjLIFu76nGIbXAknnmgveki6tfU1czpgpOwoOb6JLk6VMOaA1x7eBVfoZlPg9jjM9KpyYVB7l8kmEzk6SUEP6LUXfcfSb97K5XTw06V/L2hyTBR2CMCKC1iuA9O/DReVRYSkt1IZwpzW5nTGkzyboH3crjKCpHlVOCoJFcQwnxaTrFNv7rXbnmwqsypWk9LCLQeqmlfnwlXWFGU17hBHIqvsS6Yo3y3JVBQIDAQABo1MwUTAdBgNVHQ4EFgQUyT7sOy64K5nT+cct7JHQF0gMN4cwHwYDVR0jBBgwFoAUyT7sOy64K5nT+cct7JHQF0gMN4cwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEALfe6JZuKCQSdV75bDhHecnLmqLhhhYoHVoDhqWpA1vX7fyz20Qp0pFog+G65RZGnaBWNxCJB4s7/E7RjVNC0RAUR3Vojd6nD8kOPHXDR4IamURTfIAaEnNFNFPGMgR6iQEptHyjs+d0gubKUyqvKQR6WibQsgzSo6d2IsYFFAzlhQeCm3XeK31z97k9q9mUm1AM2mlhs4qTBWnBE1xeDOuG05FS/fTLQWujprrQXbEq40jrBfVKmLSCxq2SheCvbFvvY60cXYC4VSjdWHaFuIJVeNAlKugMsDxigJzlU7IgF2dI/vHtS8H6Job/ZLfgJGSqarlSYFHq3B4IjMqigTQ==</X509Certificate>
48+
</X509Data>
49+
</KeyInfo>
50+
</KeyDescriptor>
51+
<Organization>
52+
<OrganizationName xml:lang="en">login.gov</OrganizationName>
53+
<OrganizationDisplayName xml:lang="en">login.gov</OrganizationDisplayName>
54+
<OrganizationURL xml:lang="en">https://login.gov</OrganizationURL>
55+
</Organization>
56+
<ContactPerson contactType="technical"></ContactPerson>
57+
<AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
58+
Location="https://secure.login.gov/api/saml/attributes" />
59+
<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
60+
<NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</NameIDFormat>
61+
</AttributeAuthorityDescriptor>
4862
<Organization>
49-
<OrganizationName xml:lang="en">login.gov</OrganizationName>
50-
<OrganizationDisplayName xml:lang="en">login.gov</OrganizationDisplayName>
51-
<OrganizationURL xml:lang="en">https://login.gov</OrganizationURL>
63+
<OrganizationName xml:lang="en">login.gov</OrganizationName>
64+
<OrganizationDisplayName xml:lang="en">login.gov</OrganizationDisplayName>
65+
<OrganizationURL xml:lang="en">https://login.gov</OrganizationURL>
5266
</Organization>
5367
<ContactPerson contactType="technical"></ContactPerson>
54-
<AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://secure.login.gov/api/saml/attributes"/>
55-
<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
56-
<NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</NameIDFormat>
57-
</AttributeAuthorityDescriptor>
58-
<Organization>
59-
<OrganizationName xml:lang="en">login.gov</OrganizationName>
60-
<OrganizationDisplayName xml:lang="en">login.gov</OrganizationDisplayName>
61-
<OrganizationURL xml:lang="en">https://login.gov</OrganizationURL>
62-
</Organization>
63-
<ContactPerson contactType="technical"></ContactPerson>
64-
</EntityDescriptor>
68+
</EntityDescriptor>

0 commit comments

Comments
 (0)