First cut at a protocol handler for federal e-auth.
[java-idp.git] / src / schemas / shibboleth-idpconfig-1.0.xsd
1 <?xml version="1.0" encoding="UTF-8"?>
2 <xs:schema 
3         targetNamespace="urn:mace:shibboleth:idp:config:1.0" 
4         xmlns:xs="http://www.w3.org/2001/XMLSchema" 
5         xmlns:credentials="urn:mace:shibboleth:credentials:1.0" 
6         xmlns:namemapper="urn:mace:shibboleth:namemapper:1.0" 
7         xmlns:idp="urn:mace:shibboleth:idp:config:1.0" 
8         elementFormDefault="qualified" 
9         attributeFormDefault="unqualified">
10
11         <xs:import namespace="urn:mace:shibboleth:credentials:1.0" schemaLocation="credentials.xsd"/>
12         <xs:import namespace="urn:mace:shibboleth:namemapper:1.0" schemaLocation="namemapper.xsd"/>
13         
14         <xs:element name="IdPConfig" type="idp:IdPConfigType"/>
15         <xs:element name="ShibbolethOriginConfig" type="idp:IdPConfigType"/>
16         
17         <xs:simpleType name="LevelType">
18                 <xs:restriction base="xs:string">
19                         <xs:enumeration value="OFF"/>
20                         <xs:enumeration value="FATAL"/>
21                         <xs:enumeration value="ERROR"/>
22                         <xs:enumeration value="WARN"/>
23                         <xs:enumeration value="INFO"/>
24                         <xs:enumeration value="DEBUG"/>
25                 </xs:restriction>
26         </xs:simpleType>
27
28         <xs:complexType name="LogWithLevels">
29                 <xs:attribute name="location" type="xs:anyURI" use="required" />
30                 <xs:attribute name="level" type="idp:LevelType" use="optional" default="WARN" />
31         </xs:complexType>
32
33         <xs:complexType name="Log">
34                 <xs:attribute name="location" type="xs:anyURI" use="required"/>
35         </xs:complexType>
36
37         <xs:simpleType name="Log4JConfigType">
38                 <xs:restriction base="xs:string">
39                         <xs:enumeration value="properties"/>
40                         <xs:enumeration value="xml"/>
41                 </xs:restriction>
42         </xs:simpleType>
43
44                 <xs:complexType name="IdPConfigType">
45                         <xs:sequence>
46                                 <xs:sequence>
47                                         <xs:element name="RelyingParty" maxOccurs="unbounded">
48                                                 <xs:complexType>
49                                                         <xs:sequence minOccurs="0">
50                                                                 <xs:element name="HSNameFormat">
51                                                                         <xs:complexType>
52                                                                                 <xs:attribute name="nameMapping" type="xs:string" use="required"/>
53                                                                         </xs:complexType>
54                                                                 </xs:element>
55                                                         </xs:sequence>
56                                                         <xs:attribute name="name" type="xs:string" use="required"/>
57                                                         <xs:attribute name="providerId" type="xs:anyURI" use="optional"/>
58                                                         <xs:attribute name="signingCredential" type="xs:string" use="optional"/>
59                                                         <xs:attribute name="AAUrl" type="xs:anyURI" use="optional"/>
60                                                         <xs:attribute name="passThruErrors" type="xs:boolean" use="optional"/>
61                                                         <xs:attribute name="forceAttributePush" type="xs:boolean" use="optional"/>
62                                                         <xs:attribute name="signAssertions" type="xs:boolean" use="optional"/>
63                                                         <xs:attribute name="forceAttributeNoPush" type="xs:boolean" use="optional"/>
64                                                         <xs:attribute name="defaultToPOSTProfile" type="xs:boolean" use="optional"/>
65                                                         <xs:attribute name="defaultAuthMethod" type="xs:string" use="optional"/>
66                                                         <xs:attribute name="preferredArtifactType" type="xs:integer" use="optional"/>
67                                                         <xs:attribute name="defaultTarget" type="xs:string" use="optional"/>
68                                                 </xs:complexType>
69                                         </xs:element>
70                                 </xs:sequence>
71                                 <xs:element name="ReleasePolicyEngine" minOccurs="0">
72                                         <xs:complexType>
73                                                 <xs:sequence>
74                                                         <xs:element name="ArpRepository">
75                                                                 <xs:complexType>
76                                                                         <xs:sequence>
77                                                                                 <xs:any namespace="##any" processContents="lax" minOccurs="0" maxOccurs="unbounded"/>
78                                                                         </xs:sequence>
79                                                                         <xs:attribute name="implementation" type="xs:string" use="required"/>
80                                                                         <xs:anyAttribute namespace="##any" processContents="lax"/>
81                                                                 </xs:complexType>
82                                                         </xs:element>
83                                                 </xs:sequence>
84                                         </xs:complexType>
85                                 </xs:element>
86
87                                 <xs:element name="Logging" minOccurs="0" maxOccurs="1">
88                                         <xs:complexType>
89                                                 <xs:choice>
90                                                         <xs:sequence>
91                                                                 <xs:element name="ErrorLog" type="idp:LogWithLevels" minOccurs="0" maxOccurs="1" />
92                                                                 <xs:element name="TransactionLog" type="idp:Log" minOccurs="0" maxOccurs="1" />
93                                                         </xs:sequence>
94                                                         <xs:element name="Log4JConfig">
95                                                                 <xs:complexType>
96                                                                         <xs:attribute name="type" type="idp:Log4JConfigType" use="optional" default="properties" />
97                                                                         <xs:attribute name="location" type="xs:anyURI" use="required" />
98                                                                 </xs:complexType>
99                                                         </xs:element>
100                                                 </xs:choice>
101                                         </xs:complexType>
102                                 </xs:element>
103
104                                 <xs:sequence>
105                                         <xs:element ref="namemapper:NameMapping" maxOccurs="unbounded"/>
106                                 </xs:sequence>
107                                 
108                                 <xs:element name="ArtifactMapper" minOccurs="0" maxOccurs="1">
109                                         <xs:complexType>
110                                                 <xs:sequence>
111                                                         <xs:any namespace="##any" processContents="lax" minOccurs="0" maxOccurs="unbounded"/>
112                                                 </xs:sequence>
113                                                 <xs:attribute name="implementation" type="xs:string" use="required"/>
114                                                 <xs:anyAttribute namespace="##any" processContents="lax"/>
115                                         </xs:complexType>
116                                 </xs:element>
117
118                                 <xs:element ref="credentials:Credentials"/>
119
120                                 <xs:element name="ProtocolHandler" minOccurs="0" maxOccurs="unbounded">
121                                         <xs:complexType>
122                                                 <xs:sequence>
123                                                         <xs:element name="Location" type="xs:anyURI" minOccurs="1" maxOccurs="unbounded" />
124                                                         <xs:any namespace="##any" processContents="lax" minOccurs="0" maxOccurs="unbounded"/>
125                                                 </xs:sequence>
126                                                 <xs:attribute name="implementation" type="xs:string" use="required" />
127                                                 <xs:anyAttribute namespace="##any" processContents="lax"/>
128                                         </xs:complexType>
129                                 </xs:element>
130
131                                 <xs:element name="FederationProvider" minOccurs="0" maxOccurs="unbounded">
132                                         <xs:complexType>
133                                                 <xs:sequence>
134                                                         <xs:any namespace="##any" processContents="lax" minOccurs="0" maxOccurs="unbounded"/>
135                                                 </xs:sequence>
136                                                 <xs:attribute name="type" type="xs:string" use="required" />
137                                                 <xs:anyAttribute namespace="##any" processContents="lax"/>
138                                         </xs:complexType>
139                                 </xs:element>
140                                 
141                         </xs:sequence>
142
143                         <xs:attribute name="resolverConfig" type="xs:string" use="optional" default="/conf/resolver.xml"/>
144                         <xs:attribute name="AAUrl" type="xs:anyURI" use="optional"/>
145                         <xs:attribute name="providerId" type="xs:anyURI" use="required"/>
146                         <xs:attribute name="defaultRelyingParty" type="xs:anyURI" use="required"/>
147                         <xs:attribute name="defaultAuthMethod" type="xs:string" use="optional" default="urn:oasis:names:tc:SAML:1.0:am:unspecified"/>
148                         <xs:attribute name="passThruErrors" type="xs:boolean" use="optional" default="false"/>
149                         <xs:attribute name="authHeaderName" type="xs:string" use="optional"/>
150                         <xs:attribute name="maxHSThreads" type="xs:integer" use="optional"/>
151                 </xs:complexType>
152
153 </xs:schema>