SAML 2.0 IdP metadata
Her er metadata som SimpleSAMLphp har generert for deg. Du må utveksle metadata med de partene du stoler på for å sette opp en føderasjon.
Du kan nå metadata i XML-format på en dedikert URL:
https://sso.unithe.hu/simplesaml/saml2/idp/metadata.php
Metadata
I SAML 2.0 Metadata XML Format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sso.unithe.hu/simplesaml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.unithe.hu/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.unithe.hu/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Egyetemi</md:GivenName> <md:SurName>Admin</md:SurName> <md:EmailAddress>mailto:admin@unithe.hu</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
I SimpleSAMLphp format - bruk denne dersom du benytter SimpleSAMLphp i den andre enden:
$metadata['https://sso.unithe.hu/simplesaml/saml2/idp/metadata.php'] = [ 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://sso.unithe.hu/simplesaml/saml2/idp/metadata.php', 'SingleSignOnService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://sso.unithe.hu/simplesaml/saml2/idp/SSOService.php', ], ], 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://sso.unithe.hu/simplesaml/saml2/idp/SingleLogoutService.php', ], ], 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => [ [ 'emailAddress' => 'admin@unithe.hu', 'contactType' => 'technical', 'givenName' => 'Egyetemi', 'surName' => 'Admin', ], ], ];
Sertifikater
Last ned X509-sertifikatene som PEM-filer.