Better algorithm for determining SSO profile in effect for a given request. Default...
[java-idp.git] / src / schemas / shibboleth-idpconfig-1.0.xsd
1 <?xml version="1.0" encoding="UTF-8"?>
2 <xs:schema 
3         targetNamespace="urn:mace:shibboleth:idp:config:1.0" 
4         xmlns:xs="http://www.w3.org/2001/XMLSchema" 
5         xmlns:credentials="urn:mace:shibboleth:credentials:1.0" 
6         xmlns:namemapper="urn:mace:shibboleth:namemapper:1.0" 
7         xmlns:idp="urn:mace:shibboleth:idp:config:1.0" 
8         elementFormDefault="qualified" 
9         attributeFormDefault="unqualified">
10
11         <xs:import namespace="urn:mace:shibboleth:credentials:1.0" schemaLocation="credentials.xsd"/>
12         <xs:import namespace="urn:mace:shibboleth:namemapper:1.0" schemaLocation="namemapper.xsd"/>
13         
14         <xs:element name="IdPConfig" type="idp:IdPConfigType"/>
15         <xs:element name="ShibbolethOriginConfig" type="idp:IdPConfigType"/>
16         
17         <xs:simpleType name="LevelType">
18                 <xs:restriction base="xs:string">
19                         <xs:enumeration value="OFF"/>
20                         <xs:enumeration value="FATAL"/>
21                         <xs:enumeration value="ERROR"/>
22                         <xs:enumeration value="WARN"/>
23                         <xs:enumeration value="INFO"/>
24                         <xs:enumeration value="DEBUG"/>
25                 </xs:restriction>
26         </xs:simpleType>
27
28         <xs:complexType name="LogWithLevels">
29                 <xs:attribute name="location" type="xs:anyURI" use="required" />
30                 <xs:attribute name="level" type="idp:LevelType" use="optional" default="WARN" />
31         </xs:complexType>
32
33         <xs:complexType name="Log">
34                 <xs:attribute name="location" type="xs:anyURI" use="required"/>
35         </xs:complexType>
36
37         <xs:simpleType name="Log4JConfigType">
38                 <xs:restriction base="xs:string">
39                         <xs:enumeration value="properties"/>
40                         <xs:enumeration value="xml"/>
41                 </xs:restriction>
42         </xs:simpleType>
43
44                 <xs:complexType name="IdPConfigType">
45                         <xs:sequence>
46                                 <xs:sequence>
47                                         <xs:element name="RelyingParty" maxOccurs="unbounded">
48                                                 <xs:complexType>
49                                                         <xs:sequence minOccurs="0">
50                                                                 <xs:element name="HSNameFormat">
51                                                                         <xs:complexType>
52                                                                                 <xs:attribute name="nameMapping" type="xs:string" use="required"/>
53                                                                         </xs:complexType>
54                                                                 </xs:element>
55                                                         </xs:sequence>
56                                                         <xs:attribute name="name" type="xs:string" use="required"/>
57                                                         <xs:attribute name="providerId" type="xs:anyURI" use="optional"/>
58                                                         <xs:attribute name="signingCredential" type="xs:string" use="optional"/>
59                                                         <xs:attribute name="AAUrl" type="xs:anyURI" use="optional"/>
60                                                         <xs:attribute name="passThruErrors" type="xs:boolean" use="optional"/>
61                                                         <xs:attribute name="forceAttributePush" type="xs:boolean" use="optional"/>
62                                                         <xs:attribute name="forceAttributeNoPush" type="xs:boolean" use="optional"/>
63                                                         <xs:attribute name="defaultToPOSTProfile" type="xs:boolean" use="optional"/>
64                                                         <xs:attribute name="defaultAuthMethod" type="xs:string" use="optional"/>
65                                                 </xs:complexType>
66                                         </xs:element>
67                                 </xs:sequence>
68                                 <xs:element name="ReleasePolicyEngine" minOccurs="0">
69                                         <xs:complexType>
70                                                 <xs:sequence>
71                                                         <xs:element name="ArpRepository">
72                                                                 <xs:complexType>
73                                                                         <xs:sequence>
74                                                                                 <xs:any namespace="##any" processContents="lax" minOccurs="0" maxOccurs="unbounded"/>
75                                                                         </xs:sequence>
76                                                                         <xs:attribute name="implementation" type="xs:string" use="required"/>
77                                                                         <xs:anyAttribute namespace="##any" processContents="lax"/>
78                                                                 </xs:complexType>
79                                                         </xs:element>
80                                                 </xs:sequence>
81                                         </xs:complexType>
82                                 </xs:element>
83
84                                 <xs:element name="Logging" minOccurs="0" maxOccurs="1">
85                                         <xs:complexType>
86                                                 <xs:choice>
87                                                         <xs:sequence>
88                                                                 <xs:element name="ErrorLog" type="idp:LogWithLevels" minOccurs="0" maxOccurs="1" />
89                                                                 <xs:element name="TransactionLog" type="idp:Log" minOccurs="0" maxOccurs="1" />
90                                                         </xs:sequence>
91                                                         <xs:element name="Log4JConfig">
92                                                                 <xs:complexType>
93                                                                         <xs:attribute name="type" type="idp:Log4JConfigType" use="optional" default="properties" />
94                                                                         <xs:attribute name="location" type="xs:anyURI" use="required" />
95                                                                 </xs:complexType>
96                                                         </xs:element>
97                                                 </xs:choice>
98                                         </xs:complexType>
99                                 </xs:element>
100
101                                 <xs:sequence>
102                                         <xs:element ref="namemapper:NameMapping" maxOccurs="unbounded"/>
103                                 </xs:sequence>
104
105                                 <xs:element ref="credentials:Credentials"/>
106
107                                 <xs:element name="ProtocolHandler" minOccurs="0" maxOccurs="unbounded">
108                                         <xs:complexType>
109                                                 <xs:sequence>
110                                                         <xs:element name="Location" type="xs:anyURI" minOccurs="1" maxOccurs="unbounded" />
111                                                         <xs:any namespace="##any" processContents="lax" minOccurs="0" maxOccurs="unbounded"/>
112                                                 </xs:sequence>
113                                                 <xs:attribute name="implementation" type="xs:string" use="required" />
114                                                 <xs:anyAttribute namespace="##any" processContents="lax"/>
115                                         </xs:complexType>
116                                 </xs:element>
117
118                                 <xs:element name="FederationProvider" minOccurs="0" maxOccurs="unbounded">
119                                         <xs:complexType>
120                                                 <xs:sequence>
121                                                         <xs:any namespace="##any" processContents="lax" minOccurs="0" maxOccurs="unbounded"/>
122                                                 </xs:sequence>
123                                                 <xs:attribute name="type" type="xs:string" use="required" />
124                                                 <xs:anyAttribute namespace="##any" processContents="lax"/>
125                                         </xs:complexType>
126                                 </xs:element>
127                                 
128                         </xs:sequence>
129
130                         <xs:attribute name="resolverConfig" type="xs:string" use="optional" default="/conf/resolver.xml"/>
131                         <xs:attribute name="AAUrl" type="xs:anyURI" use="optional"/>
132                         <xs:attribute name="providerId" type="xs:anyURI" use="required"/>
133                         <xs:attribute name="defaultRelyingParty" type="xs:anyURI" use="required"/>
134                         <xs:attribute name="defaultAuthMethod" type="xs:string" use="optional" default="urn:oasis:names:tc:SAML:1.0:am:unspecified"/>
135                         <xs:attribute name="passThruErrors" type="xs:boolean" use="optional" default="false"/>
136                         <xs:attribute name="authHeaderName" type="xs:string" use="optional"/>
137                         <xs:attribute name="maxHSThreads" type="xs:integer" use="optional"/>
138                 </xs:complexType>
139
140 </xs:schema>