Metadatos IdP SAML 2.0
Aquí están los metadatos que SimpleSAMLphp ha generado. Puede enviar este documento de metadatos a sus socios de confianza para configurar una federación.
Puede obtener una URL con los metadatos xml:
https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metadatos
En formato xml de metadatos SAML 2.0:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>FINKI</md:GivenName> <md:SurName>FCC</md:SurName> <md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
En un fichero de formato SimpleSAMLphp - utilice esta opción si está usando una entidad SimpleSAMLphp en el otro extremo:
$metadata['https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => array ( 0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent', ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'fcc@finki.ukim.mk', 'contactType' => 'technical', 'givenName' => 'FINKI', 'surName' => 'FCC', ), ), );
Certificados
Descargar los certificados X509 en formato PEM.