SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>FINKI</md:GivenName>
<md:SurName>FCC</md:SurName>
<md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://tmf.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php',
),
),
'certData' => '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',
'NameIDFormat' =>
array (
0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent',
),
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'fcc@finki.ukim.mk',
'contactType' => 'technical',
'givenName' => 'FINKI',
'surName' => 'FCC',
),
),
);
Certificates
Download the X509 certificates as PEM-encoded files.