SAML 2.0 IdP Metadatuak
Hona hemen SimpleSAMLphp-ak zuretzat sortu dituen metadatuak. Metadatuen dokumentu hau konfidantzazko zure kideei bidal diezaiekezu federazio bat konfiguratzeko.
xml metadatuekin URL bat eskura dezakezu:
https://ffosz.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metadatuak
SAML 2.0 metadatuetako xml formatuan:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://ffosz.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ffosz.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ffosz.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>FINKI</md:GivenName> <md:SurName>FCC</md:SurName> <md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
SimpleSAMLphp formatuko fitxategi batean - beste muturrean SimpleSAMLphp entitate bat erabiltzen ariz gero, erabil ezazu aukera hau:
$metadata['https://ffosz.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://ffosz.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://ffosz.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://ffosz.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => array ( 0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent', ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'fcc@finki.ukim.mk', 'contactType' => 'technical', 'givenName' => 'FINKI', 'surName' => 'FCC', ), ), );
Ziurtagiriak
X509 ziurtagiriak PEM formatuan deskargatu.