Package swiss.trustbroker.federation.xmlconfig
package swiss.trustbroker.federation.xmlconfig
Classes for the XML based configuration.
Note that the capitalization of XML element sometimes differs from the one class or field name.
-
ClassDescriptionThis class describes the configuration of the AccessRequest for an RP.Authentication Context Class (ACClass).Account Source configuration.Whitelist of Assertion consumer service URLs / OIDC redirect URLs.This class describes the configuration of announcements for an RP.Configuration for SAMl Artifact Binding.Modes for SAML Artifact Binding.Selection of claims returned by CP/IDM.OIDC client audiences.OIDC authorization grant types.OIDC authorization grant types.This class describes the configuration of an application to be authorized by AccessRequest.Describes Authorized Applications for AccessRequest.The certificate configurations contain file paths relative toMapping of OIDC/SAML claims.This class describes the configuration of a claims provider (CP).Configuration for CP mapped to an RP.Defines all known claims providers and their display on the HRD screen in a XML file config.List of CPs mappings for an RP.Defines claims parties (CPs).OIDC client authentication methods.OIDC client authentication methods.List of constant attributes as declared.Abstraction for shared features of RP and CP.CounterParty.CounterPartyBuilder<C extends CounterParty,
B extends CounterParty.CounterPartyBuilder<C, B>> Annotation with default value for a field.Attribute definition.This class describes the configuration of the SAML encryption for an RP.Configuration for encryption Key Info.Configuration for encryption key placement.Configuration enabling toggle.SSO device fingerprint check.Configuration for an individual error code.Error flow control configuration.Home Name configuration.Specify a list of queries that are executed in the specified order.Configures an IDM query to be executed.Handling of same attributes across queries.Handling of multi-values.OIDC client applications for an RP.Source for OIDC CP claims.Sources of claims for OIDC CPs.OIDC client application configuration.Security policy overrides for OIDC.A base config class that mau contain references relative to its file path.Configures the profile selection.Mode for profile selection.SAML/OIDC protocol endpoints.This class describes the configuration of the provisioning for a CP.Provisioning mode for a claims party.Quality of Authentication (QoA) configuration.Comparison of Qoa values.This class describes the configuration of a relying party (RP).RelyingParty.RelyingPartyBuilder<C extends RelyingParty,B extends RelyingParty.RelyingPartyBuilder<C, B>> Defines relying parties (RPs).OIDC client resources.OIDC response modes.SAML configuration for CP/RP.OIDC scopes.OIDC client scopes.Groovy script hook configuration.Groovy script hooks per RP/CP.This class allows configuring policies per CP/RP as opposed to SecurityChecks on a global level.Cryptographic setup of SAML signing as supported by Apache XML-security configuration.Keystore configuration.SignerKeystore.SignerKeystoreBuilder<C extends SignerKeystore,B extends SignerKeystore.SignerKeystoreBuilder<C, B>> Keystore/truststore configuration.Truststore configuration.SignerTruststore.SignerTruststoreBuilder<C extends SignerTruststore,B extends SignerTruststore.SignerTruststoreBuilder<C, B>> Operation mode for single (global) logout.Single logout (SLO) protocol.Single logout (SLO) configurations for an RP.XTB Single Sign On (SSO, SLO) configuration for an RP.SSO groups are defined per CP as the XTB Single Sign On (SSO, SLO) mechanism separates SSO logins per identity.All SSO groups are configured in this list.Policy for handling if the user returned by the CP is not found or not active in the IDM.The SubjectName map allows to pick an attribute as a mapped subject nameId from the following sources in this order: AttributesSelection >UserDetailsSelection PropertiesSelection If the issuer is defined, the picking is done per CP.Subject Name ID mappings.Status for an XML config element that is validated and disabled if invalid.WS-Trust configuration for RP.Bindings for WS-Trust