SAML 2.0 SPメタデータ
ここは SimpleSAMLphp が生成したメタデータがあります。あなたは信頼するパートナーにこのメタデータを送信し信頼された連携を構築出来ます。
https://idp02.riu.edu.ar/module.php/saml/sp/metadata.php/Federacion-RIU
メタデータ
SAML 2.0 用のメタデータXMLフォーマット:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp02.riu.edu.ar/module.php/saml/sp/metadata.php/Federacion-RIU" ID="pfx2b161fd0-ab87-9b81-5c11-9b4e730e85c6"><ds:Signature> <ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/> <ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> <ds:Reference URI="#pfx2b161fd0-ab87-9b81-5c11-9b4e730e85c6"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/><ds:DigestValue>+l1KYcud/DHrQTQiwOpCcgUGB6h5jEztY6XsXlW9V/w=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>bj18I9YJVoyAxOadQN3Eb1kcFVTLLKhHgri58+OEcbjqMfbLThUhar4scb9/4JbuBUzq4dsKtogWceoqJQ2659mW9PDbcNZAJu9jakI4X+KlBxGFF0SwLcCNhwhsdpCkUVbVabvqBpKJ3deTwEsJsn7r40nl9xEosiYqYPglz4+raQ3CJsMo4nz7BMDXyuQ/iTizVnH42xHLj6AiqmcRrz14ALye3s+KS1/yY3e4h3gioaJLz/+RTMpqmFlBfSSd1e0t3squU/7tXQUMSPfDtBXTvlA+0ORbfoCXm7k5N2GpLx8l2+oaWbYd67QBExPQOytv7zPEiLHHMuxwsLjOSQ==</ds:SignatureValue> <ds:KeyInfo><ds:X509Data><ds:X509Certificate>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</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature> <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol" AuthnRequestsSigned="true"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp02.riu.edu.ar/module.php/saml/sp/saml2-logout.php/Federacion-RIU"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp02.riu.edu.ar/module.php/saml/sp/saml2-acs.php/Federacion-RIU" index="0"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://idp02.riu.edu.ar/module.php/saml/sp/saml1-acs.php/Federacion-RIU" index="1"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idp02.riu.edu.ar/module.php/saml/sp/saml2-acs.php/Federacion-RIU" index="2"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://idp02.riu.edu.ar/module.php/saml/sp/saml1-acs.php/Federacion-RIU/artifact" index="3"/> </md:SPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Admin</md:GivenName> <md:EmailAddress>mailto:federacion@riu.edu.ar</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
SimpleSAMLphp のファイルフォーマット - 片側でも SimpleSAMLphpエンティティを使用する場合にこれを使用します:
$metadata['https://idp02.riu.edu.ar/module.php/saml/sp/metadata.php/Federacion-RIU'] = array ( 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp02.riu.edu.ar/module.php/saml/sp/saml2-logout.php/Federacion-RIU', ), ), 'AssertionConsumerService' => array ( 0 => array ( 'index' => 0, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST', 'Location' => 'https://idp02.riu.edu.ar/module.php/saml/sp/saml2-acs.php/Federacion-RIU', ), 1 => array ( 'index' => 1, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:browser-post', 'Location' => 'https://idp02.riu.edu.ar/module.php/saml/sp/saml1-acs.php/Federacion-RIU', ), 2 => array ( 'index' => 2, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact', 'Location' => 'https://idp02.riu.edu.ar/module.php/saml/sp/saml2-acs.php/Federacion-RIU', ), 3 => array ( 'index' => 3, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:artifact-01', 'Location' => 'https://idp02.riu.edu.ar/module.php/saml/sp/saml1-acs.php/Federacion-RIU/artifact', ), ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'mailto:federacion@riu.edu.ar', 'contactType' => 'technical', 'givenName' => 'Admin', ), ), 'certData' => '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', 'redirect.validate' => true, );