SAML 2.0 IdP metaandmed
Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.
Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:
https://saml.claire.escen.de/saml2/idp/metadata.php
Metaandmed
SAML 2.0 metaandmete XML-vormingus:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://saml.claire.escen.de/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.claire.escen.de/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.claire.escen.de/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
</md:EntityDescriptor>
SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:
$metadata['https://saml.claire.escen.de/saml2/idp/metadata.php'] = [
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://saml.claire.escen.de/saml2/idp/metadata.php',
'SingleSignOnService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://saml.claire.escen.de/saml2/idp/SSOService.php',
],
],
'SingleLogoutService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://saml.claire.escen.de/saml2/idp/SingleLogoutService.php',
],
],
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
];
Sertifikaadid
Lae alla X509 sertifikaadid PEM kodeeringus failidena.