SAML 2.0 identitetsudbyders metadata
Her er det metadata, som SimpleSAMLphp har genereret. Du kan sende det til dem du stoler i forbindelse med oprettelsen af en føderation.
Du kan få metadata-xml her:
https://arh-staff.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metadata
I SAML 2.0 metadata xml-format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://arh-staff.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://arh-staff.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://arh-staff.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>FINKI</md:GivenName> <md:SurName>FCC</md:SurName> <md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
I SimpleSAMLphp flat-file format - brug dette hvis du også bruger SimpleSAMLphp i den anden ende;
$metadata['https://arh-staff.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://arh-staff.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://arh-staff.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://arh-staff.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php', ), ), 'certData' => 'MIIDqzCCApOgAwIBAgIUCRZngTpdL6eRZYF61Nt5h7Cfb+UwDQYJKoZIhvcNAQELBQAwZTELMAkGA1UEBhMCTUsxCjAIBgNVBAgMASAxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEqMCgGA1UEAwwhYXJoLXN0YWZmLmlkcC1wcm94eS5maW5raS51a2ltLm1rMB4XDTIwMDQwMjEwMDEzMVoXDTMwMDMzMTEwMDEzMVowZTELMAkGA1UEBhMCTUsxCjAIBgNVBAgMASAxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEqMCgGA1UEAwwhYXJoLXN0YWZmLmlkcC1wcm94eS5maW5raS51a2ltLm1rMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA40LInJD//L3jlSC0WZQyJCQnJHAKx/nv1eGjwQqX6JgH5drKwx0dd9s2qhkdiKRHPiEddPm37C8udzKe1KJbYmHTMmic+LCPAtyjyoRp1sRjL8cPXypfyYivr050dckURWSJdO+jTfUR+QxpntG6IKezhK0XZPhTJmmt+ABTZgvXvwOTQ7PxzaB/lQad0k/4WspWO8sO1R3+b08/DyU8NyNzXXjglArrdnQtNfbROHop16DVuFUgIkKjXVr9SrVny0Jtg24szfWhfK17C0b83qkZR3Nk8jNxIooqH1iEVCxVreG3ePso30OJk1uaj9ebuI2ljD5Q5p5BElN53JQUcQIDAQABo1MwUTAdBgNVHQ4EFgQUJ3D3wwH7AmIFDe4KF+D55x7XQ9EwHwYDVR0jBBgwFoAUJ3D3wwH7AmIFDe4KF+D55x7XQ9EwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEA3+n0c5vuVQFJThvxp8oH+Xszr+4wCAuPfCxcWCDLC2aLVw4OE2FDyr+doS1XK6aeDy5A2xTawov6CwUizVaBTuLqusX5HT4CmNEVNpWVKRwIHvxdyz7fNZDD8tJjlkvc0hyuFzlWqcWL4m4ooYgu4FOoW2AznpuGqgK9/BrYaVezK89PuYKCGKTaGsJMcUQJsPkqL0ygjhnkZiwAreZJ7qHyFMmcwjPOb2dJL1S11b4/XpUklTdQlVW6vI6k5jY9XOxXnNqNMXWv/qZTqG4CWSu7QjTsBeG+N2BP0BlM4pGnX9qtYIyKX2C0iw8bL+7Ko34nbAAkRBVZXaYRwy2MPw==', 'NameIDFormat' => array ( 0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent', ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'fcc@finki.ukim.mk', 'contactType' => 'technical', 'givenName' => 'FINKI', 'surName' => 'FCC', ), ), );
Certifikater
Download X509 certifikaterne som PEM-indkodet filer.