SAML 2.0 IdP Metapodatki
Tu so metapodatki, ki jih je generiral SimpleSAMLphp. Dokument lahko pošljete zaupanja vrednim partnerjem, s katerimi boste ustvarili federacijo.
XML metapodatki se nahajajo na tem naslovu:
https://idp.ejf.hu/simplesaml/saml2/idp/metadata.php
Metapodatki
V SAML 2.0 Metapodatkovni XML format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.ejf.hu/simplesaml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ejf.hu/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ejf.hu/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>AAD</md:GivenName> <md:SurName>Xadmin</md:SurName> <md:EmailAddress>mailto:adm@ejf.hu</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
V SimpleSAMLphp "flat file" formatu - ta format uporabite, če uporabljate SimpleSAMLphp entiteto na drugi strani:
$metadata['https://idp.ejf.hu/simplesaml/saml2/idp/metadata.php'] = [ 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://idp.ejf.hu/simplesaml/saml2/idp/metadata.php', 'SingleSignOnService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.ejf.hu/simplesaml/saml2/idp/SSOService.php', ], ], 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.ejf.hu/simplesaml/saml2/idp/SingleLogoutService.php', ], ], 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => [ [ 'emailAddress' => 'adm@ejf.hu', 'contactType' => 'technical', 'givenName' => 'AAD', 'surName' => 'Xadmin', ], ], ];
Digitalna potrdila
Prenesi X509 digitalno potrdilo v PEM datoteki.