<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
</head>
<body>
<p>Hi Lanxin,</p>
<p>"security" lives in a different namespace. This should work:<br>
</p>
<p><font face="monospace"><ContactPerson
xmlns:remd=<a class="moz-txt-link-rfc2396E" href="http://refeds.org/metadata">"http://refeds.org/metadata"</a> contactType="other"
remd:contactType=<a class="moz-txt-link-rfc2396E" href="http://refeds.org/metadata/contactType/security">"http://refeds.org/metadata/contactType/security"</a>><br>
<GivenName>Andrea</GivenName><br>
<SurName>Ceccanti</SurName><br>
<EmailAddress><a class="moz-txt-link-freetext" href="mailto:andrea.ceccanti@cnaf.infn.it">mailto:andrea.ceccanti@cnaf.infn.it</a></EmailAddress><br>
</ContactPerson></font></p>
<p>Best regards,</p>
<p>Felix</p>
<p><br>
</p>
<div class="moz-cite-prefix">Am 11.07.22 um 10:42 schrieb MA Lanxin:<br>
</div>
<blockquote type="cite"
cite="mid:3b25afc9.54b33.181ec6c9270.Coremail.ma@ihep.ac.cn">
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
<p> Hello,
</p>
<p> I am using IDP4. I need to configure security contact metadata
extension.
</p>
<p> Here is an example below. If I want to generate the similar
lines in my IDP4 metadata, how should I do/modify which
configuration files ?
</p>
<p> <br>
</p>
<p> <ContactPerson contactType="support"><br>
<GivenName>Andrea</GivenName><br>
<SurName>Ceccanti</SurName><br>
<EmailAddress><a class="moz-txt-link-freetext" href="mailto:andrea.ceccanti@cnaf.infn.it">mailto:andrea.ceccanti@cnaf.infn.it</a></EmailAddress><br>
</ContactPerson><br>
<ContactPerson contactType="technical"><br>
<EmailAddress><a class="moz-txt-link-freetext" href="mailto:iam-support@lists.infn.it">mailto:iam-support@lists.infn.it</a></EmailAddress><br>
</ContactPerson><br>
<ContactPerson contactType="administrative"><br>
<GivenName>Davide</GivenName><br>
<SurName>Salomoni</SurName><br>
<EmailAddress><a class="moz-txt-link-freetext" href="mailto:davide.salomoni@cnaf.infn.it">mailto:davide.salomoni@cnaf.infn.it</a></EmailAddress><br>
</ContactPerson><br>
<ContactPerson contactType="other"><br>
<GivenName>Andrea</GivenName><br>
<SurName>Ceccanti</SurName><br>
<EmailAddress><a class="moz-txt-link-freetext" href="mailto:andrea.ceccanti@cnaf.infn.it">mailto:andrea.ceccanti@cnaf.infn.it</a></EmailAddress><br>
</ContactPerson><br>
</EntityDescriptor>
</p>
<p> <br>
</p>
<p> Thanks a lot,<br>
Best regards,
</p>
<p> Lanxin<br>
</p>
<blockquote class="ReferenceQuote"
style="padding-left:5px;margin-right:0px;margin-left:5px;border-left-color:#B6B6B6;border-left-width:2px;border-left-style:solid;"
name="replyContent"> -----原始邮件-----<br>
<b>发件人:</b><span id="rc_from">"Woolf, Carl"
<a class="moz-txt-link-rfc2396E" href="mailto:Carl_Woolf@hms.harvard.edu"><Carl_Woolf@hms.harvard.edu></a></span><br>
<b>发送时间:</b><span id="rc_senttime">2022-07-10 03:04:04 (星期日)</span><br>
<b>收件人:</b> "Shib Users" <a class="moz-txt-link-rfc2396E" href="mailto:users@shibboleth.net"><users@shibboleth.net></a><br>
<b>抄送:</b> <br>
<b>主题:</b> Re: servlet access of Attributes via Server
Variables?<br>
<br>
<style>_font-face {font-family:"Cambria Math"; panose-1:2 4 5 3 5 4 6 3 2 4;}_font-face {font-family:Calibri; panose-1:2 15 5 2 2 2 4 3 2 4;}p.MsoNormal, li.MsoNormal, div.MsoNormal {margin:0in; font-size:11.0pt; font-family:"Calibri",sans-serif;}a:link, span.MsoHyperlink {mso-style-priority:99; color:blue; text-decoration:underline;}span.EmailStyle19 {mso-style-type:personal-reply; font-family:"Calibri",sans-serif; color:windowtext;}.MsoChpDefault {mso-style-type:export-only; font-size:10.0pt;}_page WordSection1 {size:8.5in 11.0in; margin:1.0in 1.0in 1.0in 1.0in;}div.WordSection1 {page:WordSection1;}</style>
<div class="WordSection1">
<p class="MsoNormal"> Thanks Nate, that does help! I will work
on this approach next week….<o:p></o:p> </p>
<p class="MsoNormal"> Best regards, - Carl<o:p></o:p> </p>
<p class="MsoNormal"> <o:p> </o:p> </p>
<div style="border-width:1pt medium medium;border-style:solid
none none;border-color:#B5C4DF currentColor
currentColor;padding:3pt 0in 0in;border-image:none;">
<p class="MsoNormal" style="margin-bottom:12pt;"> <b><span
style="color:black;font-size:12pt;">From: </span></b><span
style="color:black;font-size:12pt;">users
<a class="moz-txt-link-rfc2396E" href="mailto:users-bounces@shibboleth.net"><users-bounces@shibboleth.net></a> on behalf of Nate
Klingenstein <a class="moz-txt-link-rfc2396E" href="mailto:ndk@signet.id"><ndk@signet.id></a><br>
<b>Date: </b>Saturday, July 9, 2022 at 1:40 PM<br>
<b>To: </b>Shib Users <a class="moz-txt-link-rfc2396E" href="mailto:users@shibboleth.net"><users@shibboleth.net></a><br>
<b>Subject: </b>RE: servlet access of Attributes via
Server Variables?<o:p></o:p></span> </p>
</div>
<div>
<p class="MsoNormal"> Carl,<br>
<br>
> …myHttpRequest.getAttribute(“attributeName”)<br>
<br>
For whatever you've named the HTTP request object and
whatever you're mapping attribute names on the wire to
behind the SP via attribute-map.xml, precisely that, yes.<br>
<br>
If you're having trouble getting an attribute populated
for some reason and things are being routed through the
normal ACS mechanism, then it's possible that you don't
have Shibboleth configured to protect the URL path that
you're accessing. You can see all the attributes
Shibboleth thinks it has for you by authenticating and
then going to:<br>
<br>
<a
href="https://shibboleth.atlassian.net/wiki/spaces/SP3/pages/2065334875/Session+Handler"
moz-do-not-send="true" class="moz-txt-link-freetext">https://shibboleth.atlassian.net/wiki/spaces/SP3/pages/2065334875/Session+Handler</a><br>
<br>
You can of course also just dump all the attributes from
myHttpRequest.<br>
<br>
Hope this helps,<br>
Nate<br>
<br>
--------<br>
Signet, Inc.<br>
The Art of Access ®<br>
<br>
<a href="https://www.signet.id" moz-do-not-send="true"
class="moz-txt-link-freetext">https://www.signet.id</a><br>
-- <br>
For Consortium Member technical support, see <a
href="https://shibboleth.atlassian.net/wiki/x/ZYEpPw"
moz-do-not-send="true" class="moz-txt-link-freetext">
https://shibboleth.atlassian.net/wiki/x/ZYEpPw</a><br>
To unsubscribe from this list send an email to
<a class="moz-txt-link-abbreviated" href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><o:p></o:p> </p>
</div>
</div>
</blockquote>
<br>
<fieldset class="moz-mime-attachment-header"></fieldset>
</blockquote>
<pre class="moz-signature" cols="72">--
Dr. rer. nat. Felix Gorschlüter
Wissenschaftlicher Mitarbeiter (Identitätsmanagement)
Zentrum für Informations- und Medientechnologie
Gebäude 25.41, Raum 01.31
Heinrich-Heine-Universität Düsseldorf
Universitätsstraße 1
40225 Düsseldorf
Postanschrift: 40204 Düsseldorf
Telefon: +49 211 81 15041
E-Mail: <a class="moz-txt-link-abbreviated" href="mailto:felix.gorschlueter@hhu.de">felix.gorschlueter@hhu.de</a></pre>
</body>
</html>