Métadonnées de SP SAML 2.0
Voici les métadonnées générées par SimpleSAMLphp. Vous pouvez les envoyer à vos partenaires de confiances pour construire une fédération d'identité.
Vous pouvez obtenir ces métadonnées XML depuis une URL dédiée:
https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/metadata.php/default-sp
Métadonnées
Au format XML de métadonnées SAML 2.0
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/metadata.php/default-sp"> <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-logout.php/default-sp"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/> </md:SPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>FINKI</md:GivenName> <md:SurName>FCC</md:SurName> <md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
Au format à plat SimpleSAMLphp - à utiliser si vous avez une installation SimpleSAMLphp sur la partie adverse :
$metadata['https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/metadata.php/default-sp'] = array ( 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-logout.php/default-sp', ), ), 'AssertionConsumerService' => array ( 0 => array ( 'index' => 0, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST', 'Location' => 'https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp', ), 1 => array ( 'index' => 1, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:browser-post', 'Location' => 'https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp', ), 2 => array ( 'index' => 2, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact', 'Location' => 'https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml2-acs.php/default-sp', ), 3 => array ( 'index' => 3, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:artifact-01', 'Location' => 'https://ffosz.idp-proxy.finki.ukim.mk/module.php/saml/sp/saml1-acs.php/default-sp/artifact', ), ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'fcc@finki.ukim.mk', 'contactType' => 'technical', 'givenName' => 'FINKI', 'surName' => 'FCC', ), ), 'certData' => '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', );