Test
Certificate valid fromI - 1
Location
//ds:Signature[0]/ds:KeyInfo/ds:X509Data/ds:X509Certificate
Description
2022-08-03 16:57:51 +0200
Test
Certificate valid untilI - 2
Location
//ds:Signature[0]/ds:KeyInfo/ds:X509Data/ds:X509Certificate
Description
2023-08-03 17:07:00 +0200
Test
Issuer DNI - 3
Location
//ds:Signature[0]/ds:KeyInfo/ds:X509Data/ds:X509Certificate
Description
CN=QuoVadis Europe EV SSL CA G1, O=QuoVadis Trustlink B.V., C=NL
Test
Subject DNI - 4
Location
//ds:Signature[0]/ds:KeyInfo/ds:X509Data/ds:X509Certificate
Description
CN=test.xua.hin.ch, O=Health Info Net AG, L=Wallisellen, ST=Zürich, C=CH, SERIALNUMBER=CHE-103.489.218, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Zürich, OID.1.3.6.1.4.1.311.60.2.1.3=CH
Test
Declared DigestValueI - 5
Location
//ds:Signature[0]/ds:SignedInfo/ds:Reference[0]/ds:DigestValue
Description
ME4WLPPG8PfyXReF6zeGhbbYWatRVgTTsZaC0R3yV/w=
Test
Canonicalized referenced contentI - 6
Location
//ds:Signature[0]/ds:SignedInfo/ds:Reference[0]
Description
<saml2:Assertion xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="_6e613d1f-699a-4780-8038-978beed6f8fa" IssueInstant="2023-03-13T15:31:45.484Z" Version="2.0" xsi:type="saml2:AssertionType"><saml2:Issuer>test.xua.hin.ch</saml2:Issuer><saml2:Subject><saml2:NameID Format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent" NameQualifier="urn:gs1:gln">7601003501681</saml2:NameID><saml2:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer"></saml2:SubjectConfirmation></saml2:Subject><saml2:Conditions NotBefore="2023-03-13T15:31:45.484Z" NotOnOrAfter="2023-03-13T15:36:45.484Z"><saml2:AudienceRestriction><saml2:Audience>urn:e-health-suisse:token-audience:all-communities</saml2:Audience></saml2:AudienceRestriction></saml2:Conditions><saml2:AuthnStatement AuthnInstant="2023-03-13T15:31:45.484Z" SessionNotOnOrAfter="2023-03-13T15:41:45.484Z"><saml2:AuthnContext><saml2:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:unspecified</saml2:AuthnContextClassRef></saml2:AuthnContext></saml2:AuthnStatement><saml2:AttributeStatement><saml2:Attribute Name="urn:oasis:names:tc:xspa:1.0:subject:purposeofuse" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:unspecified"><saml2:AttributeValue><PurposeOfUse xmlns="urn:hl7-org:v3" code="NORM" codeSystem="2.16.756.5.30.1.127.3.10.5" codeSystemName="eHealth Suisse Verwendungszweck" displayName="Normalzugriff" xsi:type="CE"></PurposeOfUse></saml2:AttributeValue></saml2:Attribute><saml2:Attribute Name="urn:oasis:names:tc:xacml:2.0:resource:resource-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:unspecified"><saml2:AttributeValue xsi:type="xsd:string">761337610445502987^^^&amp;2.16.756.5.30.1.127.3.10.3&amp;ISO</saml2:AttributeValue></saml2:Attribute><saml2:Attribute Name="urn:oasis:names:tc:xspa:1.0:subject:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:unspecified"><saml2:AttributeValue xsi:type="xsd:string">Roeland Luykx</saml2:AttributeValue></saml2:Attribute><saml2:Attribute Name="urn:oasis:names:tc:xspa:1.0:subject:organization" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:unspecified"><saml2:AttributeValue xsi:type="xsd:string">AD Swiss EPD INT Test Organisation</saml2:AttributeValue></saml2:Attribute><saml2:Attribute Name="urn:oasis:names:tc:xspa:1.0:subject:organization-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:unspecified"><saml2:AttributeValue xsi:type="xsd:string">urn:oid:2.16.756.5.30.1.221.3.3.2.9999123</saml2:AttributeValue></saml2:Attribute><saml2:Attribute Name="urn:oasis:names:tc:xacml:2.0:subject:role" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:unspecified"><saml2:AttributeValue><Role xmlns="urn:hl7-org:v3" code="HCP" codeSystem="2.16.756.5.30.1.127.3.10.6" codeSystemName="eHealth Suisse EPR Akteure" displayName="Behandelnde(r)" xsi:type="CE"></Role></saml2:AttributeValue></saml2:Attribute><saml2:Attribute Name="urn:ihe:iti:xca:2010:homeCommunityId" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:unspecified"><saml2:AttributeValue xsi:type="xsd:string">urn:oid:2.16.756.5.30.1.221.3.1.1.3</saml2:AttributeValue></saml2:Attribute></saml2:AttributeStatement></saml2:Assertion>
Location
//ds:Signature[0]/ds:KeyInfo
Description
A X509Data element is expected in the KeyInfo
Location
//ds:Signature[0]/ds:SignedInfo/ds:Reference[0]
Description
Reference successfully checked
Location
//ds:Signature[0]/ds:KeyInfo/ds:X509Data/ds:X509Certificate
Description
The certificate is valid in terms of dates
Location
//ds:Signature[0]/ds:SignatureValue
Description
The signature value is correct
Location
//ds:Signature[0]/ds:SignedInfo/ds:Reference[0]/ds:DigestValue
Description
The DigestValue is correct