SAML 2.0 IdP Metadatuak
Hona hemen SimpleSAMLphp-ak zuretzat sortu dituen metadatuak. Metadatuen dokumentu hau konfidantzazko zure kideei bidal diezaiekezu federazio bat konfiguratzeko.
xml metadatuekin URL bat eskura dezakezu:
https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metadatuak
SAML 2.0 metadatuetako xml formatuan:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIDnzCCAoegAwIBAgIURnNpcC+KpHmNIdjGDwYXUjOTLTUwDQYJKoZIhvcNAQELBQAwXzELMAkGA1UEBhMCTUsxCjAIBgNVBAgMASAxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEkMCIGA1UEAwwbdG1mLmlkcC1wcm94eS5maW5raS51a2ltLm1rMB4XDTIwMDQwMTIyMTkxNVoXDTMwMDMzMDIyMTkxNVowXzELMAkGA1UEBhMCTUsxCjAIBgNVBAgMASAxDzANBgNVBAcMBlNrb3BqZTENMAsGA1UECgwEVUtJTTEkMCIGA1UEAwwbdG1mLmlkcC1wcm94eS5maW5raS51a2ltLm1rMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzK4oucEvRnOY3Z6h97bNHRvXvUMedE/4SukoTbdqBNUQ+kDFrwZdvbBNCtfBDxIc+mt50I4cJTd+gA/ZFZ2k2b6qOvuu8WC2edqgfKAwg2OhGq8Nf45TUmomt78PojkHqzpHq95iULA8xo2T80TzROxVYjoLonA5bOFfqt93na7fbkXaAqATMLfifjOHsStI0SayWVWOBjCYeuvWllUSJ6kvKfhf3acH5jb4KS3aGZYl9iwIdXHGT90cV1SLgIxT6D2CurKwsa85wcctMg71h4e0DD6IptuINm6sm+ufBT6jO0PvX6/EvfOpuOidVQzQe1AKL7nSgK0X+bJkQCYjLQIDAQABo1MwUTAdBgNVHQ4EFgQULnKfrR+qDn5kUbM33nGNDj2qAyEwHwYDVR0jBBgwFoAULnKfrR+qDn5kUbM33nGNDj2qAyEwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAgvYkPG4kCBkdKhGTBHJranFE/8YkEgPdFYRkz+B+Qu4AfI3qwSHWL1jkFHlmRHoLfEayZvuVbcfFifloxHhB4+AiWir7E15A6iGF0Mw3PQjMcFVXbOavm0bYHAPlzKh4k0f20VW2KeSDoRJ5v2BcxWDVP+eMrcV+W1VwzT7Mgk20EWNaYXIacAG5UWP3oJ8NkQXrDCkQ8aXUJVx4vZhD48T3odrfFP/WXdmiEly2UKMO+9/wlW+ALvQdmZ5G/qtlAol5DLz4HgmBRH/1ECyg2T5PfLuWOSO4S7LeTp8vGkNeSnRzUBfJgaHcRW6EgbSzn06lkByHWgSDMvTNz+gmyQ==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>FINKI</md:GivenName> <md:SurName>FCC</md:SurName> <md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
SimpleSAMLphp formatuko fitxategi batean - beste muturrean SimpleSAMLphp entitate bat erabiltzen ariz gero, erabil ezazu aukera hau:
$metadata['https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => array ( 0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent', ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'fcc@finki.ukim.mk', 'contactType' => 'technical', 'givenName' => 'FINKI', 'surName' => 'FCC', ), ), );
Ziurtagiriak
X509 ziurtagiriak PEM formatuan deskargatu.