SAML 2.0 IdP metadata
Her er metadata som simpleSAMLphp har generert for deg. Du må utveksle metadata med de partene du stoler på for å sette opp en føderasjon.
Du kan nå metadata i XML-format på en dedikert URL:
https://idp-sso.occitanie-en-scene.fr/simplesaml/saml2/idp/metadata.php
Metadata
I SAML 2.0 Metadata XML Format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp-sso.occitanie-en-scene.fr/simplesaml/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-sso.occitanie-en-scene.fr/simplesaml/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-sso.occitanie-en-scene.fr/simplesaml/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Administrateur Informatique Occitanie en scène</md:GivenName>
<md:EmailAddress>admin@occitanie-en-scene.fr</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
I simpleSAMLphp format - bruk denne dersom du benytter simpleSAMLphp i den andre enden:
$metadata['https://idp-sso.occitanie-en-scene.fr/simplesaml/saml2/idp/metadata.php'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://idp-sso.occitanie-en-scene.fr/simplesaml/saml2/idp/metadata.php',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://idp-sso.occitanie-en-scene.fr/simplesaml/saml2/idp/SSOService.php',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://idp-sso.occitanie-en-scene.fr/simplesaml/saml2/idp/SingleLogoutService.php',
),
),
'certData' => 'MIID0TCCArmgAwIBAgIJAM01OMCRee7NMA0GCSqGSIb3DQEBCwUAMH8xCzAJBgNVBAYTAkZSMRAwDgYDVQQIDAdIZXJhdWx0MRQwEgYDVQQHDAtNb250cGVsbGllcjEYMBYGA1UECgwPUmVzZWF1IGVuIHNjZW5lMQswCQYDVQQLDAJJVDEhMB8GA1UEAwwYaWRwLXNzby5yZXNlYXVlbnNjZW5lLmZyMB4XDTE2MDYzMDEzNTI0MFoXDTI2MDYzMDEzNTI0MFowfzELMAkGA1UEBhMCRlIxEDAOBgNVBAgMB0hlcmF1bHQxFDASBgNVBAcMC01vbnRwZWxsaWVyMRgwFgYDVQQKDA9SZXNlYXUgZW4gc2NlbmUxCzAJBgNVBAsMAklUMSEwHwYDVQQDDBhpZHAtc3NvLnJlc2VhdWVuc2NlbmUuZnIwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCsxUOV5a8EBpcflx3Yvz0Kf3Q0EUCOKUOU3A69J8uQsb0jyTnfo+RU9POo5ko0pXEjRHSBve/Gk6V5l9RzNeTWmzSADEQjpJz4gRez8oawI091LmGc++T2mnwvDarXRBqL6ptswHwyGb1BKsl0zs4wKMNvZ6CxBGZ3QJBgf0GYhVF8WuwaOQPMESOzzByIKo6Vgf+Mz8/TYk6nTZ9HD1HwpNteAD2vlAD/w5hg5GqlQmvGGfLFUdtfjNMcSvDk8ybLhgA8bmoq7I5SVRm9/uNDWYYEvz3K9KBRZd6a55CT5LN2Ja1f5//2S6xx3SfQA4+col9z0PlhpvJ1mpcR4EkDAgMBAAGjUDBOMB0GA1UdDgQWBBTIvijbOznBa8DY+wg9AxnblT32ujAfBgNVHSMEGDAWgBTIvijbOznBa8DY+wg9AxnblT32ujAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA779iugGfa6AuvibHR2PlbPEggGWUuvaGN16xCHOpWIMiFiKCIciHlzdeXqopIY4gqKAQJXKLtci6EjX+QL+IVKlErz91YmwuVfZ0Ouu3o/BOzt1VDjljaDPPDX521BFsZR2qWhaOyPgtSMwPeVjUpTnt2k/4DYQuBTko6l7fh5gpWXrd0t7RYO50w6EZohpcDpW5POzuTEAVVpgv5JRYjRN5PZ7geFVbatJBNq9Z/rbaSZmP1H7FUn4OEY95e/96x55fhBoFn74CbhYoDjuVCwKGXi1TYaQTvk0UIm51Cw+BA6IUFaOCTAMlvk+72u1em/5Ur3ChQ4Ag0NhLfWaCD',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'admin@occitanie-en-scene.fr',
'contactType' => 'technical',
'givenName' => 'Administrateur Informatique Occitanie en scène',
),
),
);
Sertifikater
Last ned X509-sertifikatene som PEM-filer.