Metadati SAML 2.0 IdP
Questi sono i metadati che SimpleSAMLphp ha generato e che possono essere inviati ai partner fidati per creare una federazione tra siti.
Si possono ottenere i metadati in XML dall'URL dedicata:
https://sf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metadati
Metadati SAML 2.0 in formato XML:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>FINKI</md:GivenName> <md:SurName>FCC</md:SurName> <md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
In formato flat per SimpleSAMLphp - da utilizzare se dall'altra parte c'è un'entità che utilizza SimpleSAMLphp
$metadata['https://sf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://sf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://sf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://sf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => array ( 0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent', ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'fcc@finki.ukim.mk', 'contactType' => 'technical', 'givenName' => 'FINKI', 'surName' => 'FCC', ), ), );
Certificati
Scarica i certificati X509 come file PEM-encoded