Afrikaans | Čeština | Dansk | Deutsch | ελληνικά | English | Español | eesti keel | Euskara | Suomeksi | Français | עִבְרִית | Hrvatski | Magyar | Bahasa Indonesia | Italiano | 日本語 | Lëtzebuergesch | Lietuvių kalba | Latviešu | Nederlands | Nynorsk | Bokmål | Język polski | Português | Português brasileiro | Românește | русский язык | Sámegiella | Slovenščina | Srpski | Svenska | Türkçe | 简体中文 | 繁體中文

SAML 2.0 IdP metaandmed

Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.

Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:

https://sf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php

Metaandmed

SAML 2.0 metaandmete XML-vormingus:

<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php">
  <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>MIIDrzCCApegAwIBAgIURLS+A5qa7U+a9IQWjZWKvTIx6NUwDQYJKoZIhvcNAQELBQAwZzELMAkGA1UEBhMCTUsxEzARBgNVBAgMClNvbWUtU3RhdGUxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEjMCEGA1UEAwwac2YuaWRwLXByb3h5LmZpbmtpLnVraW0ubWswHhcNMjAwNDA1MTY1MjE3WhcNMzAwNDAzMTY1MjE3WjBnMQswCQYDVQQGEwJNSzETMBEGA1UECAwKU29tZS1TdGF0ZTEPMA0GA1UEBwwGU2tvcGplMQ0wCwYDVQQKDARVS0lNMSMwIQYDVQQDDBpzZi5pZHAtcHJveHkuZmlua2kudWtpbS5tazCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJcxeOW+8mzFIstBTCJWIHqmgO6RxNrwDTgVo9DhhKx9l9xP1lUHjKK2PZJnYcaPyktrk05tBAxAcX62GTMaW7tJ/50Gkimkw9sXFH3GD9cyOXIOLaebxnv8PIHbJCL+EhiMu3SQ2tVe1LMDR8VqUNiE6a1YgsUCavvMcEPPdKmkaY5ybJh36pm/scr8N09NCDvDKGYdcH/hZJ6436LaItvTsgEvX8alNLesp3ajlaha6QJz+YtIbkOIOxbA+7SbxB5H1Fgzic1arHwjkl3RWhh5FoWwDJe9dUiHqD8b2KRsdtITTp5PrncRmKwxPrya9TkA6nBG4n3nL2Tt6QG/mBUCAwEAAaNTMFEwHQYDVR0OBBYEFE/vGNFD7iyI31xfVINO5hoolJWTMB8GA1UdIwQYMBaAFE/vGNFD7iyI31xfVINO5hoolJWTMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAGQAea3X4Z1z2RkZEPluuc2OGnNWvMm7aoozpTYWs5yYZyFdr13Ayzpoj3zpi92dzi9ayl3NFms/Ty/Afb1WnlphUJUC06r0cGhVcdoszky+c7WFKtynK6aWRzxwvdzoFIRTlPPeTMswU82o1obvuNDdRuW6K6Zsn4SavnlPt6c50otD+NWiNj/Zky8SWtmi0g3CeE9C3wkZSYkY0wMpM/2uNZXXlJKGm+vgpudftXXHalrlAQFBvwNN6g2oBGU5cRaLkQBpadz+YBtKvs1TTl14wt+o0WP2+gvwNEwEMaBc8dfHiLBXQphrBwgwgXRbcjxlUXT/jao7l2VL6pbpujY=</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/>
  </md:IDPSSODescriptor>
  <md:ContactPerson contactType="technical">
    <md:GivenName>FINKI</md:GivenName>
    <md:SurName>FCC</md:SurName>
    <md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>

SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:

$metadata['https://sf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array (
  'metadata-set' => 'saml20-idp-remote',
  'entityid' => 'https://sf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php',
  'SingleSignOnService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://sf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php',
    ),
  ),
  'SingleLogoutService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://sf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php',
    ),
  ),
  'certData' => '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',
  'NameIDFormat' => 
  array (
    0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent',
  ),
  'contacts' => 
  array (
    0 => 
    array (
      'emailAddress' => 'fcc@finki.ukim.mk',
      'contactType' => 'technical',
      'givenName' => 'FINKI',
      'surName' => 'FCC',
    ),
  ),
);

Sertifikaadid

Lae alla X509 sertifikaadid PEM kodeeringus failidena.