<!DOCTYPE html>
<html data-lt-installed="true">
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
  </head>
  <body style="padding-bottom: 1px;">
    <p>Hi Nadim,</p>
    <p>I use the XML-SchemaDoc
(<a class="moz-txt-link-freetext" href="https://docs.evolveum.com/midpoint/reference/support-4.8/schema/schemadoc/">https://docs.evolveum.com/midpoint/reference/support-4.8/schema/schemadoc/</a>)
      if I need to look up properties and their purpose.<br>
      You can find the security policy here:<br>
    </p>
    <p><a class="moz-txt-link-freetext" href="https://evolveum.com/downloads/midpoint/4.8/midpoint-4.8-schemadoc/http---midpoint-evolveum-com-xml-ns-public-common-common-3/object/SecurityPolicyType.html">https://evolveum.com/downloads/midpoint/4.8/midpoint-4.8-schemadoc/http---midpoint-evolveum-com-xml-ns-public-common-common-3/object/SecurityPolicyType.html</a><br>
    </p>
    <p>Hope this helps.<br>
      Kind regards,</p>
    <p>Sven<br>
    </p>
    <div class="moz-cite-prefix">Am 12.01.24 um 21:02 schrieb Nadim
      El-Khoury via midPoint:<br>
    </div>
    <blockquote type="cite"
cite="mid:CADoGsS7GZFtfz4xBsWPNqaFYdqMhktMHHRJjUrY6xM3csSF12A@mail.gmail.com">
      <meta http-equiv="content-type" content="text/html; charset=UTF-8">
      <div dir="ltr">
        <div dir="ltr">Hi Martin, Everyone
          <div><br>
          </div>
          <div>Thank you for the information. It is very helpful.</div>
          <div>I have the following questions.</div>
          <div>Is there a document that shows all of the XML entries
            that can be part of the security policy? I looked on the
            Evolveum site and could not find it.</div>
          <div>The other question: can I put the security policy XML
            file in /opt/midpoint/post-initial-objects/securityPolicy or
            is it best to modify the security policy directly using the
            GUI?</div>
          <div>Is there a working security SAML example that we can look
            at?</div>
          <div><br>
          </div>
          <div><br>
          </div>
          <div>
            <div>Best,</div>
            <div><br>
            </div>
            <div>
              <div>Nadim El-Khoury</div>
              <div>Director of Networks, Systems, Infrastructure, and
                CISO</div>
              <div>Springfield College</div>
              <div>263 Alden Street</div>
              <div>Springfield, MA 01109</div>
            </div>
          </div>
        </div>
        <br>
        <div class="gmail_quote">
          <div dir="ltr" class="gmail_attr">On Fri, Jan 12, 2024 at
            4:33 AM Martin Lízner via midPoint <<a
              href="mailto:midpoint@lists.evolveum.com"
              moz-do-not-send="true" class="moz-txt-link-freetext">midpoint@lists.evolveum.com</a>>
            wrote:<br>
          </div>
          <blockquote class="gmail_quote"
style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">
            <div class="msg-6269581302865076561">
              <div dir="ltr">
                <div
style="font-family:Aptos,Aptos_EmbeddedFont,Aptos_MSFontService,Calibri,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
                  Hi, it depends on your security policy. UrlSuffix
                  could be e.g. "saml"</div>
                <div
style="font-family:Aptos,Aptos_EmbeddedFont,Aptos_MSFontService,Calibri,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)">
                  <br>
                </div>
                <div><span
style="font-family:Aptos,Aptos_EmbeddedFont,Aptos_MSFontService,Calibri,Helvetica,sans-serif;font-size:12pt;color:rgb(0,0,0)"><img
                      id="m_7710385112247167927image_0" size="68559"
src="cid:part1.3Dq03Ivd.qUwS5uxd@stuvus.uni-stuttgart.de" class=""
                      width="449" height="292"></span></div>
                <hr style="display:inline-block;width:98%">
                <div id="m_7710385112247167927divRplyFwdMsg" dir="ltr"><font
                    style="font-size:11pt" face="Calibri, sans-serif"
                    color="#000000"><b>Od:</b> midPoint <<a
                      href="mailto:midpoint-bounces@lists.evolveum.com"
                      target="_blank" moz-do-not-send="true"
                      class="moz-txt-link-freetext">midpoint-bounces@lists.evolveum.com</a>>
                    za uživatele Nadim El-Khoury via midPoint <<a
                      href="mailto:midpoint@lists.evolveum.com"
                      target="_blank" moz-do-not-send="true"
                      class="moz-txt-link-freetext">midpoint@lists.evolveum.com</a>><br>
                    <b>Odesláno:</b> úterý 9. ledna 2024 4:17<br>
                    <b>Komu:</b> midPoint General Discussion <<a
                      href="mailto:midpoint@lists.evolveum.com"
                      target="_blank" moz-do-not-send="true"
                      class="moz-txt-link-freetext">midpoint@lists.evolveum.com</a>><br>
                    <b>Kopie:</b> Nadim El-Khoury <<a
                      href="mailto:nel-khoury@springfield.edu"
                      target="_blank" moz-do-not-send="true"
                      class="moz-txt-link-freetext">nel-khoury@springfield.edu</a>><br>
                    <b>Předmět:</b> [midPoint] SAML2 Module
                    Configuration</font>
                  <div> </div>
                </div>
                <div>
                  <div dir="ltr">Hi Everyone,
                    <div><br>
                    </div>
                    <div>We are working on configuring the SAML2 module
                      in Midpoint. </div>
                    <div>What is the
                      <authenticationSequenceUrlSuffic> that is
                      mentioned in section 2.1.10.7 (Generation of
                      service provider metadata) of the
                      <a
href="https://docs.evolveum.com/midpoint/reference/support-4.8/security/authentication/flexible-authentication/configuration/#module-saml2"
                        target="_blank" moz-do-not-send="true">
                        flexible authentication configuration</a>?</div>
                    <div><br clear="all">
                      <div>
                        <div>I really appreciate your help.</div>
                        <div><br>
                        </div>
                        <div>Best,</div>
                        <div><br>
                        </div>
                        <div>
                          <div>Nadim El-Khoury</div>
                          <div>Director of Networks, Systems,
                            Infrastructure, and CISO</div>
                          <div>Springfield College</div>
                          <div>263 Alden Street</div>
                          <div>Springfield, MA 01109</div>
                        </div>
                      </div>
                      <div><br>
                      </div>
                      <span>-- </span><br>
                      <div dir="ltr">
                        <div dir="ltr"><font
face="Helvetica Neue, Helvetica, Arial, sans-serif" color="#000000">"</font><span
style="color:rgba(0,0,0,0.9);font-family:"Source Serif Pro",serif">I’ve
                            learned that people will forget what you
                            said, people will forget what you did, but
                            people will never forget how you made them
                            feel." </span><span
style="color:rgba(0,0,0,0.9);font-family:"Source Serif Pro",serif">Maya
                            Angelou</span></div>
                      </div>
                    </div>
                  </div>
                </div>
              </div>
              _______________________________________________<br>
              midPoint mailing list<br>
              <a href="mailto:midPoint@lists.evolveum.com"
                target="_blank" moz-do-not-send="true"
                class="moz-txt-link-freetext">midPoint@lists.evolveum.com</a><br>
              <a
href="https://lists.evolveum.com/mailman/listinfo/midpoint"
                rel="noreferrer" target="_blank" moz-do-not-send="true"
                class="moz-txt-link-freetext">https://lists.evolveum.com/mailman/listinfo/midpoint</a><br>
            </div>
          </blockquote>
        </div>
        <br clear="all">
        <div><br>
        </div>
        <span class="gmail_signature_prefix">-- </span><br>
        <div dir="ltr" class="gmail_signature">
          <div dir="ltr"><font
              face="Helvetica Neue, Helvetica, Arial, sans-serif"
              color="#000000">"</font><span
style="color:rgba(0,0,0,0.9);font-family:"Source Serif Pro",serif">I’ve
              learned that people will forget what you said, people will
              forget what you did, but people will never forget how you
              made them feel." </span><span
style="color:rgba(0,0,0,0.9);font-family:"Source Serif Pro",serif">Maya
              Angelou</span></div>
        </div>
      </div>
      <br>
      <fieldset class="moz-mime-attachment-header"></fieldset>
      <pre class="moz-quote-pre" wrap="">_______________________________________________
midPoint mailing list
<a class="moz-txt-link-abbreviated" href="mailto:midPoint@lists.evolveum.com">midPoint@lists.evolveum.com</a>
<a class="moz-txt-link-freetext" href="https://lists.evolveum.com/mailman/listinfo/midpoint">https://lists.evolveum.com/mailman/listinfo/midpoint</a>
</pre>
    </blockquote>
    <pre class="moz-signature" cols="72">-- 
Sven Feyerabend
Referent für IT-Betreuung
stuvus – Studierendenvertretung Universität Stuttgart
Pfaffenwaldring 5c
70569 Stuttgart</pre>
  </body>
  <lt-container></lt-container>
</html>