Afrikaans | Català | Čeština | Dansk | Deutsch | ελληνικά | English | Español | eesti keel | Euskara | Suomeksi | Français | עִבְרִית | Hrvatski | Magyar | Bahasa Indonesia | Italiano | 日本語 | Lëtzebuergesch | Lietuvių kalba | Latviešu | Nederlands | Nynorsk | Bokmål | Język polski | Português | Português brasileiro | Românește | русский язык | Sámegiella | Slovenščina | Srpski | Sesotho | Svenska | Türkçe | isiXhosa | 简体中文 | 繁體中文 | IsiZulu

SAML 2.0 IdP metaandmed

Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.

Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:

https://idp.netcomposite.net/simplesaml/saml2/idp/metadata.php

Metaandmed

SAML 2.0 metaandmete XML-vormingus:

<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.netcomposite.net/simplesaml/saml2/idp/metadata.php">
  <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.netcomposite.net/simplesaml/saml2/idp/SingleLogoutService.php"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.netcomposite.net/simplesaml/saml2/idp/SSOService.php"/>
  </md:IDPSSODescriptor>
  <md:ContactPerson contactType="technical">
    <md:GivenName>Administrator</md:GivenName>
    <md:EmailAddress>mailto:info@netcomposite.com</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>

SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:

$metadata['https://idp.netcomposite.net/simplesaml/saml2/idp/metadata.php'] = [
    'metadata-set' => 'saml20-idp-remote',
    'entityid' => 'https://idp.netcomposite.net/simplesaml/saml2/idp/metadata.php',
    'SingleSignOnService' => [
        [
            'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
            'Location' => 'https://idp.netcomposite.net/simplesaml/saml2/idp/SSOService.php',
        ],
    ],
    'SingleLogoutService' => [
        [
            'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
            'Location' => 'https://idp.netcomposite.net/simplesaml/saml2/idp/SingleLogoutService.php',
        ],
    ],
    'certData' => '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',
    'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
    'contacts' => [
        [
            'emailAddress' => 'info@netcomposite.com',
            'contactType' => 'technical',
            'givenName' => 'Administrator',
        ],
    ],
];

Sertifikaadid

Lae alla X509 sertifikaadid PEM kodeeringus failidena.