SAML 2.0 IdP Metapodatki
Tu so metapodatki, ki jih je generiral SimpleSAMLphp. Dokument lahko pošljete zaupanja vrednim partnerjem, s katerimi boste ustvarili federacijo.
XML metapodatki se nahajajo na tem naslovu:
https://eduid.epss.hu/simplesamlphp/saml2/idp/metadata.php
Metapodatki
V SAML 2.0 Metapodatkovni XML format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://eduid.epss.hu/simplesamlphp/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.epss.hu/simplesamlphp/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eduid.epss.hu/simplesamlphp/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Hatos</md:GivenName> <md:SurName>Gabor</md:SurName> <md:EmailAddress>mailto:hatos@ggki.hu</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
V SimpleSAMLphp "flat file" formatu - ta format uporabite, če uporabljate SimpleSAMLphp entiteto na drugi strani:
$metadata['https://eduid.epss.hu/simplesamlphp/saml2/idp/metadata.php'] = [ 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://eduid.epss.hu/simplesamlphp/saml2/idp/metadata.php', 'SingleSignOnService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://eduid.epss.hu/simplesamlphp/saml2/idp/SSOService.php', ], ], 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://eduid.epss.hu/simplesamlphp/saml2/idp/SingleLogoutService.php', ], ], 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => [ [ 'emailAddress' => 'hatos@ggki.hu', 'contactType' => 'technical', 'givenName' => 'Hatos', 'surName' => 'Gabor', ], ], ];
Digitalna potrdila
Prenesi X509 digitalno potrdilo v PEM datoteki.