SAML 2.0 IdP metaandmed
Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.
Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:
https://idp02.riu.edu.ar/saml2/idp/metadata.php
Metaandmed
SAML 2.0 metaandmete XML-vormingus:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp02.riu.edu.ar/saml2/idp/metadata.php" ID="pfx2741e602-39d8-db34-dd8c-a141b80f78b9"><ds:Signature> <ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/> <ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> <ds:Reference URI="#pfx2741e602-39d8-db34-dd8c-a141b80f78b9"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/><ds:DigestValue>FA5bDWbrszgOov49bOJbe9Nv+P1ySTQ98iOdE1PxEPs=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>nG4/NyU348+Jytc+O1dt2hNZu9g1oQllTzEd6p/gHNbNTOGbVhdaQomIzFZ4itSu/xYvK2zX/SqpSV4aeYjn9umwwKZ8UqrdxMsqpDAlxnQe2vhYcpQ+1J13+c/Si+05HGPvXbp2eGRqakBTs4zF/3yRxBEjgAQk7mdgiw6RlfwT9uu2r0muo6/HDE496fi8Ox6FKvW8GTNWHxcQLP8EQToVH3rhvcW1q+W8SyqQg9CiSGXpTq4PgBlQSaibMNBBAuTxw2dqlTzy8z7A7Es0rf/qbePpIEsgMYlBWVP8lx3CfK5QLjVffIe2ESmbn04OfV9qaaMUFr+chqAUEySQuw==</ds:SignatureValue> <ds:KeyInfo><ds:X509Data><ds:X509Certificate>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</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp02.riu.edu.ar/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp02.riu.edu.ar/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:Organization> <md:OrganizationName xml:lang="en">Federacion - Asociacion Redes de Interconexion Universitaria</md:OrganizationName> <md:OrganizationName xml:lang="es">Federacion - Asociacion Redes de Interconexion Universitaria</md:OrganizationName> <md:OrganizationDisplayName xml:lang="en">Federacion - Asociacion Redes de Interconexion Universitaria</md:OrganizationDisplayName> <md:OrganizationDisplayName xml:lang="es">Federacion - Asociacion Redes de Interconexion Universitaria</md:OrganizationDisplayName> <md:OrganizationURL xml:lang="en">https://www.riu.edu.ar/</md:OrganizationURL> <md:OrganizationURL xml:lang="es">https://www.riu.edu.ar/</md:OrganizationURL> </md:Organization> <md:ContactPerson contactType="technical"> <md:GivenName>Admin</md:GivenName> <md:EmailAddress>mailto:federacion@riu.edu.ar</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:
$metadata['https://idp02.riu.edu.ar/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://idp02.riu.edu.ar/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp02.riu.edu.ar/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp02.riu.edu.ar/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'OrganizationName' => array ( 'en' => 'Federacion - Asociacion Redes de Interconexion Universitaria', 'es' => 'Federacion - Asociacion Redes de Interconexion Universitaria', ), 'OrganizationDisplayName' => array ( 'en' => 'Federacion - Asociacion Redes de Interconexion Universitaria', 'es' => 'Federacion - Asociacion Redes de Interconexion Universitaria', ), 'OrganizationURL' => array ( 'en' => 'https://www.riu.edu.ar/', 'es' => 'https://www.riu.edu.ar/', ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'mailto:federacion@riu.edu.ar', 'contactType' => 'technical', 'givenName' => 'Admin', ), ), );
Sertifikaadid
Lae alla X509 sertifikaadid PEM kodeeringus failidena.