SAML 2.0 IdP metaandmed
Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.
Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:
https://pmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metaandmed
SAML 2.0 metaandmete XML-vormingus:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://pmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIDsTCCApmgAwIBAgIUQPMnhMPP96KFqgcufl6G6iNKR1QwDQYJKoZIhvcNAQELBQAwaDELMAkGA1UEBhMCTUsxEzARBgNVBAgMClNvbWUtU3RhdGUxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEkMCIGA1UEAwwbcG1mLmlkcC1wcm94eS5maW5raS51a2ltLm1rMB4XDTIwMDQxMzE1NDQ1MFoXDTMwMDQxMTE1NDQ1MFowaDELMAkGA1UEBhMCTUsxEzARBgNVBAgMClNvbWUtU3RhdGUxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEkMCIGA1UEAwwbcG1mLmlkcC1wcm94eS5maW5raS51a2ltLm1rMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxxQZwRW+tn9kzFO+WGNoVfzI6uFDqA+dFK8eJHa8lWHFDrPMyQxhuj/DRQDybCMhRJAe8iqw9323h00flks+9yOJgf5Vp5C7YTW/EGeCUzdY+wV4GVjq+372JHJc3fpWxABwFQQQSJm3OniN0ogNu62pVEPF1JxpLnRbL9eM6zXi+avTy2fkTl1xULxINwdmPjCoVz6bkhYsuaGOIZjaYsSNi4Jatz8f0zQf7KF6DyKLG6rm32BTPMnkiIvWzGXzZCYKDGjr2th/dY+a6k5oL8sCR5Y2fb5bZ1YxaMLSlUDT6hFbS/GZVGgXoHt/Dx3c4LeJ6HzWKVg/7RKD48zJ7QIDAQABo1MwUTAdBgNVHQ4EFgQUdK2qjRTwCHbRz3DYwaNURiOUGOgwHwYDVR0jBBgwFoAUdK2qjRTwCHbRz3DYwaNURiOUGOgwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAwhwzsyVqSWb5ExxcNlNm5FpmegSt3BC9BVmH9v/YAn3c0XdKmpgAK0nGzvvHXWrCSXF49C+vq9o6ow+/H9nB/BOEthWTOA3wcEywvyVYCO/3tK++btSQpPmbg+spqjG5gRJUdym5niaqTLMGKM9IeCigDiYOeVOvjWmKIkoN3m//c/J8CUli06NoVNX0uc+86Yo9T2+LgvXkXnEz6BJaHURZyc73hMEbGuU5bQ5Fy0rkP+r1QKOQrtrdLb/oMxK6CmxGxfJ3moSIIyUr9QvTrgKdNBsgqGLzsxrJIAlZk+Jm5730wLJXsJTvWrS64ZdNdJY11os8zwY3sn2tfM7r4g==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pmf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pmf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>FINKI</md:GivenName> <md:SurName>FCC</md:SurName> <md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:
$metadata['https://pmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://pmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://pmf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://pmf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => array ( 0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent', ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'fcc@finki.ukim.mk', 'contactType' => 'technical', 'givenName' => 'FINKI', 'surName' => 'FCC', ), ), );
Sertifikaadid
Lae alla X509 sertifikaadid PEM kodeeringus failidena.