SAML 2.0 IdP Metadata
SimpleSAMLphp har har genererat följande metadata. För att sätta upp en betrodd federation kan du skicka metadata till de parter du har förtroende för.
Du kan hämta metadata i XML-format på dedicerad URL:
https://sso.gjn.cz/saml2/idp/metadata.php
Metadata
I SAML 2.0 Metadata XML-format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sso.gjn.cz/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>MIIDhzCCAm+gAwIBAgIJAMva2Eeub/aiMA0GCSqGSIb3DQEBCwUAMFoxCzAJBgNVBAYTAkNaMRcwFQYDVQQIDA5DemVjaCBSZXB1YmxpYzEPMA0GA1UEBwwGUHJhZ3VlMQwwCgYDVQQKDANHSk4xEzARBgNVBAMMCnNzby5nam4uY3owHhcNMTgxMjA3MTQwOTAwWhcNMjgxMjA2MTQwOTAwWjBaMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDzANBgNVBAcMBlByYWd1ZTEMMAoGA1UECgwDR0pOMRMwEQYDVQQDDApzc28uZ2puLmN6MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuIWvq3HKhe0QYZ8ShmyfM+wwQPtzyTwaL3h1RmrT4dUpsZBTNm4E+Mkj4Y43j3LFMZigcsiXQ7soLfNHGvdc8aXxlp9dhdfa348wTwON+6rHF7qb7USaoP+uhPs8DJLXGLZ83k5tqTvXQ+07HV3xsSk421f/nZTvTIUZeeuptOIQe38mxHNmxoHat1D5ir3gcOgNxdnFnUmUx8JvVwHaS6rcpShKTDXIDCVGiThaBprzzr8oXbsZ1hopsOqwcZPJ1aRT3VmSW50yaXoAOZVVWR50fJr4i+6lvuOqcnnTgXqjTZXoeh5VJKprebfNARGTgaCWX5JhWqn/HUa3hMeaCwIDAQABo1AwTjAdBgNVHQ4EFgQUsE4+8gM63oDKPHswylvIjPdTHRcwHwYDVR0jBBgwFoAUsE4+8gM63oDKPHswylvIjPdTHRcwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAIFQ/2yrLNpHhfKqQkm4hyMezalcc959c3qSSQdV7J6TVvTcOdzqLDKblJkErCqnlcQ9t7LhXmEaK2KveZunJewlldwPG6lo0hwsYA+hDxit21S23f8FpvClepBbfY4ya/3gu7RVzv/GObkFs37EcG8Qqfo71UIzrA3jt4oZjrKbMzIR12lYzxrfDCdnYJtT6DRJnP9zpClpA7FawzAoKBE04uNmMOH+V9KmAq3LmaKs27nqd2nR6VPlsxuhaqwy77pGwEzwaGc+rWju35z2HpEIRgvewSrP1G3kegmmxkBMYhSScfeKUbwR/cZ8ZvaMhCMLoefo14fegDg+iKQtcDw==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.gjn.cz/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.gjn.cz/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Administrator</md:GivenName>
<md:EmailAddress>admin@gjn.cz</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
I filformatet för simpleSAML, använd detta detta format om SimpleSAMLphp används i mottagende sida:
$metadata['https://sso.gjn.cz/saml2/idp/metadata.php'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://sso.gjn.cz/saml2/idp/metadata.php',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://sso.gjn.cz/saml2/idp/SSOService.php',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://sso.gjn.cz/saml2/idp/SingleLogoutService.php',
),
),
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'admin@gjn.cz',
'contactType' => 'technical',
'givenName' => 'Administrator',
),
),
);
Certifikat
Hämta X509-certifikaten som PEM-kodade filer.