SAML 2.0 IdP - Metadane
Tutaj sa metadane, które simpleSAMLphp wygenerował dla Ciebie. Możesz je wysłać zaufanym partnerom w celu stworzenia zaufanej federacji.
Możesz pobrać metadane w formacie xml:
Metadane
W formacie SAML 2.0 Metadata XML
<?xml version="1.0"?>
<EntityDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" entityID="https://idp.acs.si/idp/20090116">
<IDPSSODescriptor xmlns:ds="http://www.w3.org/2000/09/xmldsig#" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</KeyDescriptor>
<KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</KeyDescriptor>
<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.acs.si/simplesaml/saml2/idp/SingleLogoutService.php"/>
<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.acs.si/simplesaml/saml2/idp/SSOService.php"/>
</IDPSSODescriptor>
<ContactPerson contactType="technical">
<GivenName>Klemen</GivenName>
<SurName>Zajec</SurName>
<EmailAddress>klemen@acs.si</EmailAddress>
</ContactPerson>
</EntityDescriptor>
V simpleSAMLphp "flat file" formatu - ta format uporabite, če uporabljate simpleSAMLphp entiteto na drugi strani:
'https://idp.acs.si/idp/20090116' => array ( 'SingleSignOnService' => 'https://idp.acs.si/simplesaml/saml2/idp/SSOService.php', 'SingleLogoutService' => 'https://idp.acs.si/simplesaml/saml2/idp/SingleLogoutService.php', 'certFingerprint' => '7dfc994fa95f25fd90642602c3ce86023921ccd6', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', ),