SAML 2.0 SP Metadata
Hona hemen SimpleSAMLphp-ak zuretzat sortu dituen metadatuak. Metadatuen dokumentu hau konfidantzazko zure kideei bidal diezaiekezu federazio bat konfiguratzeko.
xml metadatuekin URL bat eskura dezakezu:
https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/metadata.php/default-sp
Metadatuak
SAML 2.0 metadatuetako xml formatuan:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/metadata.php/default-sp"> <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIDnzCCAoegAwIBAgIUFj7r4ZQPhnAfQCSSLFa+fqheQ4AwDQYJKoZIhvcNAQELBQAwXzELMAkGA1UEBhMCTUsxCjAIBgNVBAgMASAxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEkMCIGA1UEAwwbYXJoLmlkcC1wcm94eS5maW5raS51a2ltLm1rMB4XDTIwMDQwMjA5NTYzN1oXDTMwMDMzMTA5NTYzN1owXzELMAkGA1UEBhMCTUsxCjAIBgNVBAgMASAxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEkMCIGA1UEAwwbYXJoLmlkcC1wcm94eS5maW5raS51a2ltLm1rMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0X/znNMAo5ccpJD6uOkWGGT6oMbiLtylzfIrqprz4CrXxIUek1+wCFaeBICKOR7F1OvROYkkssSo2HVO5aqIPlkSs8sRxJQGgw8V4zxORWsIIW59CWvPT0XTG5HSNVQGBPY9WKcrydTc9Hvd13sSYA3JHYT7qegt3aou1iWZD+yW0zY/WaaTixKDkyTBNjFYqT9NBYJ4IutCztP6oeWRQj1Q11HeT7rkG3jYW7NfWjOH6XKrdRJTyFczEFWmRT0rd63xKsrraLOqqyqvvvidI47YrhGokDdbnFabe6leaO7CN6FTkYuhUNL++JFRVobnBNbQhrHpskxbQ0atjx7VywIDAQABo1MwUTAdBgNVHQ4EFgQUzIUyGEIrQ+SRVHSIHWvaSGA9xY4wHwYDVR0jBBgwFoAUzIUyGEIrQ+SRVHSIHWvaSGA9xY4wDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAOdr/pWa0/yju6eboEYLvt60eRsClIlzRMTtujBpQhEpUjwubUZHj2Rj3imiCEhZPMKWHUTS6twBoRSH8PFCpSCuswqfzhqnShjdp2z/MU8nndWsFDHGuIJ/xpv940gU5ccElz0lu9AAEfpeBfk8xi2Q18CXjRsU8r7t6GABFK4QpRQy+9OYbD28esZQNTkM7od3uOKmb7WOUcJYaBGObN3x4ffFD5LnX6Ld+JMrY7updL5Xz+yb/bW5wQ1Rg/jhzWk/KHlU9BYBhNh03hAl+qDDwrBDApXMBey5TJ4GYQA4YQcldzwbLEt0wUvNISSuRedXACkzgeska66EIclZdoA==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIDnzCCAoegAwIBAgIUFj7r4ZQPhnAfQCSSLFa+fqheQ4AwDQYJKoZIhvcNAQELBQAwXzELMAkGA1UEBhMCTUsxCjAIBgNVBAgMASAxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEkMCIGA1UEAwwbYXJoLmlkcC1wcm94eS5maW5raS51a2ltLm1rMB4XDTIwMDQwMjA5NTYzN1oXDTMwMDMzMTA5NTYzN1owXzELMAkGA1UEBhMCTUsxCjAIBgNVBAgMASAxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEkMCIGA1UEAwwbYXJoLmlkcC1wcm94eS5maW5raS51a2ltLm1rMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0X/znNMAo5ccpJD6uOkWGGT6oMbiLtylzfIrqprz4CrXxIUek1+wCFaeBICKOR7F1OvROYkkssSo2HVO5aqIPlkSs8sRxJQGgw8V4zxORWsIIW59CWvPT0XTG5HSNVQGBPY9WKcrydTc9Hvd13sSYA3JHYT7qegt3aou1iWZD+yW0zY/WaaTixKDkyTBNjFYqT9NBYJ4IutCztP6oeWRQj1Q11HeT7rkG3jYW7NfWjOH6XKrdRJTyFczEFWmRT0rd63xKsrraLOqqyqvvvidI47YrhGokDdbnFabe6leaO7CN6FTkYuhUNL++JFRVobnBNbQhrHpskxbQ0atjx7VywIDAQABo1MwUTAdBgNVHQ4EFgQUzIUyGEIrQ+SRVHSIHWvaSGA9xY4wHwYDVR0jBBgwFoAUzIUyGEIrQ+SRVHSIHWvaSGA9xY4wDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAOdr/pWa0/yju6eboEYLvt60eRsClIlzRMTtujBpQhEpUjwubUZHj2Rj3imiCEhZPMKWHUTS6twBoRSH8PFCpSCuswqfzhqnShjdp2z/MU8nndWsFDHGuIJ/xpv940gU5ccElz0lu9AAEfpeBfk8xi2Q18CXjRsU8r7t6GABFK4QpRQy+9OYbD28esZQNTkM7od3uOKmb7WOUcJYaBGObN3x4ffFD5LnX6Ld+JMrY7updL5Xz+yb/bW5wQ1Rg/jhzWk/KHlU9BYBhNh03hAl+qDDwrBDApXMBey5TJ4GYQA4YQcldzwbLEt0wUvNISSuRedXACkzgeska66EIclZdoA==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-logout.php/default-sp"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/> </md:SPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>FINKI</md:GivenName> <md:SurName>FCC</md:SurName> <md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
SimpleSAMLphp formatuko fitxategi batean - beste muturrean SimpleSAMLphp entitate bat erabiltzen ariz gero, erabil ezazu aukera hau:
$metadata['https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/metadata.php/default-sp'] = array ( 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-logout.php/default-sp', ), ), 'AssertionConsumerService' => array ( 0 => array ( 'index' => 0, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST', 'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp', ), 1 => array ( 'index' => 1, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:browser-post', 'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp', ), 2 => array ( 'index' => 2, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact', 'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp', ), 3 => array ( 'index' => 3, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:artifact-01', 'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp/artifact', ), ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'fcc@finki.ukim.mk', 'contactType' => 'technical', 'givenName' => 'FINKI', 'surName' => 'FCC', ), ), 'certData' => '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', );