SAML 2.0 SP Metadata
Hona hemen SimpleSAMLphp-ak zuretzat sortu dituen metadatuak. Metadatuen dokumentu hau konfidantzazko zure kideei bidal diezaiekezu federazio bat konfiguratzeko.
xml metadatuekin URL bat eskura dezakezu:
https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/metadata.php/default-sp
Metadatuak
SAML 2.0 metadatuetako xml formatuan:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/metadata.php/default-sp">
<md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-logout.php/default-sp"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
<md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/>
</md:SPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>FINKI</md:GivenName>
<md:SurName>FCC</md:SurName>
<md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
SimpleSAMLphp formatuko fitxategi batean - beste muturrean SimpleSAMLphp entitate bat erabiltzen ariz gero, erabil ezazu aukera hau:
$metadata['https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/metadata.php/default-sp'] = array (
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-logout.php/default-sp',
),
),
'AssertionConsumerService' =>
array (
0 =>
array (
'index' => 0,
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST',
'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp',
),
1 =>
array (
'index' => 1,
'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:browser-post',
'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp',
),
2 =>
array (
'index' => 2,
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact',
'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp',
),
3 =>
array (
'index' => 3,
'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:artifact-01',
'Location' => 'https://arh.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp/artifact',
),
),
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'fcc@finki.ukim.mk',
'contactType' => 'technical',
'givenName' => 'FINKI',
'surName' => 'FCC',
),
),
'certData' => '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',
);