Shib 1.3 IdPメタデータ
ここは SimpleSAMLphp が生成したメタデータがあります。あなたは信頼するパートナーにこのメタデータを送信し信頼された連携を構築出来ます。
https://idp02.riu.edu.ar/shib13/idp/metadata.php?output=xml
メタデータ
SAML 2.0 用のメタデータXMLフォーマット:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp02.riu.edu.ar/shib13/idp/metadata.php" ID="pfxc1f06c3d-7be6-9452-6632-5b1647c397d8"><ds:Signature> <ds:SignedInfo><ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/> <ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/> <ds:Reference URI="#pfxc1f06c3d-7be6-9452-6632-5b1647c397d8"><ds:Transforms><ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/><ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/></ds:Transforms><ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/><ds:DigestValue>vzPepGJlJr1+1n9z8cDc1rRQTIWWErVCGEGQzZ/02aQ=</ds:DigestValue></ds:Reference></ds:SignedInfo><ds:SignatureValue>YkUI0CiGGfhuS0YZtRyTHNWgoL1RJbS2NYjmtf9PF/lCYR/tdpA9elk4sOI34VxknJ50z+rU+elRhPBDPFwa1GRpG8+jA+IzFkJkcADsM+YpSQ30JeQV7JsR5IuQMFvSVXzt4jVthPP7xAS5uhZXGrlc4PAPubi4n1PSfwqmFXbmSWdygun0ON1EZHEkV/0KdO9VR9XUoO6GXjBcqjeb54LQCw3mg4si67+vP4pVH6AbKW3S0phsWhor/eXFop7wmtbvT36uNkr/UdRwPSes2Bj8B/3AFwcS4WQcf+IF0aCK/n7zq0YvdDnvWa1v8lP1ZkeATYTk5Uwl/3r5OamBVA==</ds:SignatureValue> <ds:KeyInfo><ds:X509Data><ds:X509Certificate>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</ds:X509Certificate></ds:X509Data></ds:KeyInfo></ds:Signature> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIDSjCCAjKgAwIBAgIJAIgYOL6D5MRlMA0GCSqGSIb3DQEBCwUAMDoxCzAJBgNVBAYTAkFSMQ0wCwYDVQQIDARDQUJBMQ0wCwYDVQQHDARDQUJBMQ0wCwYDVQQKDARBUklVMB4XDTE4MDkxNzE4MjkzMFoXDTI4MDkxNjE4MjkzMFowOjELMAkGA1UEBhMCQVIxDTALBgNVBAgMBENBQkExDTALBgNVBAcMBENBQkExDTALBgNVBAoMBEFSSVUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDC4aq4GUdK/s4o5Yj0MhNfPZsNihkRFsHPHZ9NR/uDiMhet09IrzJSEg4tTDpHSvTeJTFJqrhTB6kSuj2bu0bGHQtqt7VZND60PtHZnMDgWJG2MgIO+R/35w+QgrlFCYKlWgVNBXUCTAoriFsnTjVaoWFGpgFgfqJ71QFyUOClwu7KSHsOZ4sxdUTHUpdi4pTLisWxxqq4Axr14v/ciDkC55OFkdwVGSHCNQp3HMtRLzgohQ/SE6lo3CwUBrq9wZiGiVWI/TJE7T0n774NYH2PwZ41LjL4MVLckD1I8JXud/8ZuP6UvXm0k4f8xYCtsB++vRXq8JkJl8gKTxteQbmtAgMBAAGjUzBRMB0GA1UdDgQWBBR3R6240ReO8YjARW+JYwQbHbhjuzAfBgNVHSMEGDAWgBR3R6240ReO8YjARW+JYwQbHbhjuzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBDMpI04l595S+80NyGdG4vINvDLGDTMpPZOK19mFDOYgXPs9QmpTtzxoQvZycIGX1J+oyIHjRdG/sp6f5tbbz8/3uHiocUJhjCInYI7sNk9s/d/7pEDzLdM2auE2oaj4v40swGdEmgG9KdAZw5BVas28/ymnHI7TygEAf/LLmMHMu4rZV+qPBrAMCr3/UcfDr6pwngjDppzXDNOsZ9Lh03Dzsd2DoGICX/I7Zf2EtEfcAf7R8qksQ8w5hQB71lULpLQw75IFB27XjHK/bZBnM+ZOtixsa+t02VYmhbjOwkkf5pqd+vOpkVb8SzSudELD3L26oeCd4JjQzEl8fWPBlm</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat> <md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp02.riu.edu.ar/shib13/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Admin</md:GivenName> <md:EmailAddress>mailto:federacion@riu.edu.ar</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
SimpleSAMLphp のファイルフォーマット - 片側でも SimpleSAMLphpエンティティを使用する場合にこれを使用します:
$metadata['https://idp02.riu.edu.ar/shib13/idp/metadata.php'] = array ( 'metadata-set' => 'shib13-idp-remote', 'entityid' => 'https://idp02.riu.edu.ar/shib13/idp/metadata.php', 'SingleSignOnService' => 'https://idp02.riu.edu.ar/shib13/idp/SSOService.php', 'certData' => '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', 'NameIDFormat' => 'urn:mace:shibboleth:1.0:nameIdentifier', );