SAML 2.0 IdP metadata
Her er metadata som SimpleSAMLphp har generert for deg. Du må utveksle metadata med de partene du stoler på for å sette opp en føderasjon.
Du kan nå metadata i XML-format på en dedikert URL:
https://idpcodepa.dev3.prometeoinnovations.com/saml2/idp/metadata.php
Metadata
I SAML 2.0 Metadata XML Format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idpcodepa.dev3.prometeoinnovations.com/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idpcodepa.dev3.prometeoinnovations.com/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idpcodepa.dev3.prometeoinnovations.com/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Fran</md:GivenName>
<md:EmailAddress>mailto:FNazario@beoneapps.com</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
I SimpleSAMLphp format - bruk denne dersom du benytter SimpleSAMLphp i den andre enden:
$metadata['https://idpcodepa.dev3.prometeoinnovations.com/saml2/idp/metadata.php'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://idpcodepa.dev3.prometeoinnovations.com/saml2/idp/metadata.php',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://idpcodepa.dev3.prometeoinnovations.com/saml2/idp/SSOService.php',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://idpcodepa.dev3.prometeoinnovations.com/saml2/idp/SingleLogoutService.php',
),
),
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'FNazario@beoneapps.com',
'contactType' => 'technical',
'givenName' => 'Fran',
),
),
);
Sertifikater
Last ned X509-sertifikatene som PEM-filer.