SAML 2.0 IdP metaandmed
Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.
Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:
https://saml.ehlis.es/simplesaml/saml2/idp/metadata.php
Metaandmed
SAML 2.0 metaandmete XML-vormingus:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://saml.ehlis.es/simplesaml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIEqTCCAxGgAwIBAgIUSWp92Wy7mxVLDSEPfawbtGGS+dwwDQYJKoZIhvcNAQELBQAwZDELMAkGA1UEBhMCRVMxEjAQBgNVBAgMCUJhcmNlbG9uYTESMBAGA1UEBwwJQmFyY2Vsb25hMRQwEgYDVQQKDAtFaGxpcywgUy5BLjEXMBUGA1UEAwwOYXV0aDIuZWhsaXMuZXMwHhcNMjEwNjE3MTUxODIxWhcNMzEwNjE3MTUxODIxWjBkMQswCQYDVQQGEwJFUzESMBAGA1UECAwJQmFyY2Vsb25hMRIwEAYDVQQHDAlCYXJjZWxvbmExFDASBgNVBAoMC0VobGlzLCBTLkEuMRcwFQYDVQQDDA5hdXRoMi5laGxpcy5lczCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBANs6LF7wVR7eebNR/duhquFig7+03zrAqKiNScsqJtMYW+H5sr30eDWbbx2Vnyz+DVxbeDqSqmVfbMNp+/Kl7GtWPpQ38MgsFxk5YDXZ/cXyS+hDQ8kfdaLTVsHiUb8fwlngNGWA066zXot1EM67PKA0aj4WcmSc7Dea1ODJV/AAJBjHNTLHEpCHBZy3eMVNY4b4U390wNUeJTqJM41tOo/HDZg5cqdKiSSfZp6Pge8WqNmuxpe8rQ3dekalOI9Uhl4WjseuK53di//A69VabVy26ykp3ub6qcvt+AFaYxrbVFeTryf1nK4fQ2wm2SPc6Wts/wXAXf7o9mQZ/fDu/2VsyVI8aOEPj7jwIzsg1hFp8coedTL2yNOoYrlHKQQtdBp8w4QjoxIkg8DxP9Kt2WbTPWGalr/mzgXPRjjwRjRODwc4wByKsk9RqWDf2pl4PYSUmDyUz1t5FqXlp1ltgg+nsoGO6bgenrH1LkWtIwROJB/D2joV3BvsNI7ypLMG7QIDAQABo1MwUTAdBgNVHQ4EFgQUI8fkNl2cYhEKPQzVyxGU1FmXKqUwHwYDVR0jBBgwFoAUI8fkNl2cYhEKPQzVyxGU1FmXKqUwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAYEAySjwm56bsh7iBfGiAjUWCaerRyeGNrVun6ad4wAAJVn1Wo2PaKNUsnxhg5sWPunh5F4BGWbr6tePw7skXZwi009EclkbKB9MV6n7BW4QALfuL3k46ZmJyJTO9mBDDl5xffxS/tSgw41lCggIDonQA8EUP3FqkLiNVL5XAs/o6+vF5kdAiNZo8lcXwmQ8TR8D4wphwo2Hu7yT0R718EG3WYWVOcgCcAzxBVbXZ/RcpasbI2Zplmq5McePAb6XV5TmYqks2Fl1B+7d/2GAMdjlPyt8civm+1QVRSGJ4mIEUWLKIlpKHZ22k6W0Nni0/OBxD9vDu9HiktP7rcRTcrrZ7mC4lKmNUXHfNkk29/tKgVWmiz++pPSYPMvcymn2JpJYUv7Q4g7j3xE25gmfeMeKhxvhi8+yowYijxzNT1OqAjk2vZQmfICd2FLmsVrDGDeMTN+1MiHF6iFuuODWY950lg24HxVx8pclJBE091EO6xJC+DpsqsJzHdxlrKxyvDYs</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.ehlis.es/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.ehlis.es/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Juan</md:GivenName> <md:SurName>Antonio</md:SurName> <md:EmailAddress>mailto:jaescudero@ehlis.es</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:
$metadata['https://saml.ehlis.es/simplesaml/saml2/idp/metadata.php'] = [ 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://saml.ehlis.es/simplesaml/saml2/idp/metadata.php', 'SingleSignOnService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://saml.ehlis.es/simplesaml/saml2/idp/SSOService.php', ], ], 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://saml.ehlis.es/simplesaml/saml2/idp/SingleLogoutService.php', ], ], 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => [ [ 'emailAddress' => 'jaescudero@ehlis.es', 'contactType' => 'technical', 'givenName' => 'Juan', 'surName' => 'Antonio', ], ], ];
Sertifikaadid
Lae alla X509 sertifikaadid PEM kodeeringus failidena.