|
| 1 | +<samlp:Response xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" ID="GOSAMLR12901174571794" Version="2.0" IssueInstant="2010-11-18T21:57:37Z" Destination="{recipient}"> |
| 2 | + <samlp:Status> |
| 3 | + <samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/></samlp:Status> |
| 4 | + <saml:Assertion xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" Version="2.0" ID="pfxa46574df-b3b0-a06a-23c8-636413198772" IssueInstant="2010-11-18T21:57:37Z"> |
| 5 | + <saml:Issuer>https://app.onelogin.com/saml/metadata/13590</saml:Issuer> |
| 6 | + <ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> |
| 7 | + <ds:SignedInfo> |
| 8 | + <ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/> |
| 9 | + <ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/> |
| 10 | + <ds:Reference URI="#pfxa46574df-b3b0-a06a-23c8-636413198772"> |
| 11 | + <ds:Transforms> |
| 12 | + <ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/> |
| 13 | + <ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/> |
| 14 | + </ds:Transforms> |
| 15 | + <ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/> |
| 16 | + <ds:DigestValue>pJQ7MS/ek4KRRWGmv/H43ReHYMs=</ds:DigestValue> |
| 17 | + </ds:Reference> |
| 18 | + </ds:SignedInfo> |
| 19 | + <ds:SignatureValue>yiveKcPdDpuDNj6shrQ3ABwr/cA3CryD2phG/xLZszKWxU5/mlaKt8ewbZOdKKvtOs2pHBy5Dua3k94AF+zxGyel5gOowmoyXJr+AOr+kPO0vli1V8o3hPPUZwRgSX6Q9pS1CqQghKiEasRyylqqJUaPYzmOzOE8/XlMkwiWmO0=</ds:SignatureValue> |
| 20 | + <ds:KeyInfo> |
| 21 | + <ds:X509Data> |
| 22 | + <ds:X509Certificate>MIIBrTCCAaGgAwIBAgIBATADBgEAMGcxCzAJBgNVBAYTAlVTMRMwEQYDVQQIDApDYWxpZm9ybmlhMRUwEwYDVQQHDAxTYW50YSBNb25pY2ExETAPBgNVBAoMCE9uZUxvZ2luMRkwFwYDVQQDDBBhcHAub25lbG9naW4uY29tMB4XDTEwMDMwOTA5NTg0NVoXDTE1MDMwOTA5NTg0NVowZzELMAkGA1UEBhMCVVMxEzARBgNVBAgMCkNhbGlmb3JuaWExFTATBgNVBAcMDFNhbnRhIE1vbmljYTERMA8GA1UECgwIT25lTG9naW4xGTAXBgNVBAMMEGFwcC5vbmVsb2dpbi5jb20wgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJAoGBAOjSu1fjPy8d5w4QyL1+zd4hIw1Mkkff4WY/TLG8OZkU5YTSWmmHPD5kvYH5uoXS/6qQ81qXpR2wV8CTowZJULg09ddRdRn8Qsqj1FyOC5slE3y2bZ2oFua72of/49fpujnFT6KnQ61CBMqlDoTQqOT62vGJ8nP6MZWvA6sxqud5AgMBAAEwAwYBAAMBAA==</ds:X509Certificate> |
| 23 | + </ds:X509Data> |
| 24 | + </ds:KeyInfo> |
| 25 | + </ds:Signature> |
| 26 | + <saml:Subject> |
| 27 | + < saml:NameID Format= "urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress"> [email protected]</ saml:NameID> |
| 28 | + <saml:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer"> |
| 29 | + <saml:SubjectConfirmationData NotOnOrAfter="2010-11-18T22:02:37Z" Recipient="{recipient}"/></saml:SubjectConfirmation> |
| 30 | + </saml:Subject> |
| 31 | + <saml:Conditions NotBefore="2010-11-18T21:52:37Z" NotOnOrAfter="2010-11-18T22:02:37Z"> |
| 32 | + <saml:AudienceRestriction> |
| 33 | + <saml:Audience>{audience}</saml:Audience> |
| 34 | + </saml:AudienceRestriction> |
| 35 | + </saml:Conditions> |
| 36 | + <saml:AuthnStatement AuthnInstant="2010-11-18T21:57:37Z" SessionNotOnOrAfter="2010-11-19T21:57:37Z" SessionIndex="_531c32d283bdff7e04e487bcdbc4dd8d"> |
| 37 | + <saml:AuthnContext> |
| 38 | + <saml:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:Password</saml:AuthnContextClassRef> |
| 39 | + </saml:AuthnContext> |
| 40 | + </saml:AuthnStatement> |
| 41 | + <saml:AttributeStatement> |
| 42 | + <saml:Attribute Name="surname"> |
| 43 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xs:string">smith</saml:AttributeValue> |
| 44 | + </saml:Attribute> |
| 45 | + <saml:Attribute Name="another_value"> |
| 46 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xs:string">value1</saml:AttributeValue> |
| 47 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xs:string">value2</saml:AttributeValue> |
| 48 | + </saml:Attribute> |
| 49 | + <saml:Attribute Name="role"> |
| 50 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xs:string">role1</saml:AttributeValue> |
| 51 | + </saml:Attribute> |
| 52 | + </saml:AttributeStatement> |
| 53 | + <saml:AttributeStatement> |
| 54 | + <saml:Attribute Name="firstname"> |
| 55 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xs:string">bob</saml:AttributeValue> |
| 56 | + </saml:Attribute> |
| 57 | + <saml:Attribute Name="role"> |
| 58 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xs:string">role2</saml:AttributeValue> |
| 59 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:type="xs:string">role3</saml:AttributeValue> |
| 60 | + </saml:Attribute> |
| 61 | + <saml:Attribute Name="attribute_with_nil_value"> |
| 62 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:nil="true"/> |
| 63 | + </saml:Attribute> |
| 64 | + <saml:Attribute Name="attribute_with_nils_and_empty_strings"> |
| 65 | + <saml:AttributeValue/> |
| 66 | + <saml:AttributeValue>valuePresent</saml:AttributeValue> |
| 67 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:nil="true"/> |
| 68 | + <saml:AttributeValue xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:nil="1"/> |
| 69 | + </saml:Attribute> |
| 70 | + </saml:AttributeStatement> |
| 71 | + </saml:Assertion> |
| 72 | +</samlp:Response> |
0 commit comments