SAML 2.0 IdP Metapodatki
Tu so metapodatki, ki jih je generiral SimpleSAMLphp. Dokument lahko pošljete zaupanja vrednim partnerjem, s katerimi boste ustvarili federacijo.
XML metapodatki se nahajajo na tem naslovu:
https://ce.mayo.edu/sites/all/libraries/simplesaml/www/saml2/idp/metadata.php
Metapodatki
V SAML 2.0 Metapodatkovni XML format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://ce.mayo.edu/sites/all/libraries/simplesaml/www/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ce.mayo.edu/sites/all/libraries/simplesaml/www/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ce.mayo.edu/sites/all/libraries/simplesaml/www/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>DLC Solutions Suport</md:GivenName>
<md:EmailAddress>mailto:support@dlc-solutions.com</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
V SimpleSAMLphp "flat file" formatu - ta format uporabite, če uporabljate SimpleSAMLphp entiteto na drugi strani:
$metadata['https://ce.mayo.edu/sites/all/libraries/simplesaml/www/saml2/idp/metadata.php'] = [
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://ce.mayo.edu/sites/all/libraries/simplesaml/www/saml2/idp/metadata.php',
'SingleSignOnService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://ce.mayo.edu/sites/all/libraries/simplesaml/www/saml2/idp/SSOService.php',
],
],
'SingleLogoutService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://ce.mayo.edu/sites/all/libraries/simplesaml/www/saml2/idp/SingleLogoutService.php',
],
],
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' => [
[
'emailAddress' => 'support@dlc-solutions.com',
'contactType' => 'technical',
'givenName' => 'DLC Solutions Suport',
],
],
];
Digitalna potrdila
Prenesi X509 digitalno potrdilo v PEM datoteki.