SAML 2.0 IdP metaandmed
Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.
Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:
https://fvm-staff.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metaandmed
SAML 2.0 metaandmete XML-vormingus:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://fvm-staff.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fvm-staff.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fvm-staff.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>FINKI</md:GivenName>
<md:SurName>FCC</md:SurName>
<md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:
$metadata['https://fvm-staff.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://fvm-staff.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://fvm-staff.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://fvm-staff.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php',
),
),
'certData' => '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',
'NameIDFormat' =>
array (
0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent',
),
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'fcc@finki.ukim.mk',
'contactType' => 'technical',
'givenName' => 'FINKI',
'surName' => 'FCC',
),
),
);
Sertifikaadid
Lae alla X509 sertifikaadid PEM kodeeringus failidena.