SAML 2.0 SP metadata
Her er metadata som SimpleSAMLphp har generert for deg. Du må utveksle metadata med de partene du stoler på for å sette opp en føderasjon.
Du kan nå metadata i XML-format på en dedikert URL:
https://my.sportpolimi.it/simplesaml/module.php/saml/sp/metadata.php/polimi-sport
Metadata
I SAML 2.0 Metadata XML Format:
<?xml version="1.0" encoding="UTF-8"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://my.sportpolimi.it/simplesaml/module.php/saml/sp/metadata.php/polimi-sport"> <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIE2zCCA0OgAwIBAgIUBELvap57NWyqSny8G7M4mwrcTt8wDQYJKoZIhvcNAQELBQAwfTELMAkGA1UEBhMCSVQxDjAMBgNVBAgMBUl0YWx5MRAwDgYDVQQHDAdUcmllc3RlMR4wHAYDVQQKDBVJbmZvcmRhdGEgU2lzdGVtaSBzcmwxCzAJBgNVBAsMAklUMR8wHQYJKoZIhvcNAQkBFhBkZXZAaW5mb3JkYXRhLml0MB4XDTIxMDEyNzEwNDI0OFoXDTMxMDEyNzEwNDI0OFowfTELMAkGA1UEBhMCSVQxDjAMBgNVBAgMBUl0YWx5MRAwDgYDVQQHDAdUcmllc3RlMR4wHAYDVQQKDBVJbmZvcmRhdGEgU2lzdGVtaSBzcmwxCzAJBgNVBAsMAklUMR8wHQYJKoZIhvcNAQkBFhBkZXZAaW5mb3JkYXRhLml0MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA0L6AQHYjwU+Xlzly18aXhovpE7WyW2uA2qLzIMO8IJep7T/bNtjNmM1oKttwp8Jdz3l3MiHjeYAoUNY914yMFRJy8AcMSVQD+yN7lViRthknbFyifSJ5XcJNcyWR3E6wQGNKBkPy1f/hSH+1vNGH6JmDAkL9aChZMXUnPxWhHquSAnuMIC8NMHz98Yyfk/4WY26dJ1zDNKom09w1YXquf7n0+wEnyoZcSgyrKMo3kBllguCuxHEN8+xjmYJPSn3t5/XUR2WFIUjr6dzOKoLUBNK3Nd+RikevdaX+zZloWsKjNQLaZLcaLa30/KXyMsLaXSVnyCEb5HiAMCl8NRVAf/s2WlBf1cx9WiXrptkUtGlRG/Xi072/lbhY7w2mDbvBaNafXiWDgtNEJGAUgeXzXnVGWcOoR+8RcMoDlB3To1dLwM5y22BEL+E+AmeuV4AqcayJAVI316H93BMChcgd3g/VpnEri58VY1PdOuTq7oSjEyeWOASdDRkjPcR4P1ddAgMBAAGjUzBRMB0GA1UdDgQWBBQK3nSfjJdM+rQbtReoWc3H02LcJzAfBgNVHSMEGDAWgBQK3nSfjJdM+rQbtReoWc3H02LcJzAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBgQAP/x9/dvkS3O8gXucHW7575IZo7EXTfalIQJcuZdY3pvTVvYyVT4oStMYQmkFhyBy+5ESIIy3cibXTeeNuP4uAJ32EAbTS4XEEl41BwjYFsKHYjxQJ3O3QptjKfpO1GOoLx0mlCzr2PnSxbuFlfB57qEOPXvUkwRf9UC1GXY5RVld/iNnswRlOm9Dxv/lofsLl31mn6la6sxxVmHHIQWTwEvOJtnQn3Hr1fji5STsnuW8IW9phJVCmj1qjiPejwUNfcxS02tmJ6Y6XN3eu6jPUKT6RZmsWCOZgq6fer7PITD7q4D867ZgRxrgkSXDRD23Dg9ngiZSPK6feY+SNk+H/R90kosKV9lP8BNuohacr7OYtVKLsf8gB07i3TDDDXVtnIzee/e7JzXxS7oR0gDqf+mEBFSJjftpHQRqems93bDZRovX6rxwBt6iflpN86nvdPB25s8OM73bUHCwCEu8eII7HqHCcT8744MVPCa6ukEiv15kE2G+5NP9B620Tkfk=</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml2-logout.php/polimi-sport"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml2-acs.php/polimi-sport" index="0"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml1-acs.php/polimi-sport" index="1"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml2-acs.php/polimi-sport" index="2"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml1-acs.php/polimi-sport/artifact" index="3"/> </md:SPSSODescriptor> </md:EntityDescriptor>
I SimpleSAMLphp format - bruk denne dersom du benytter SimpleSAMLphp i den andre enden:
$metadata['https://my.sportpolimi.it/simplesaml/module.php/saml/sp/metadata.php/polimi-sport'] = array ( 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml2-logout.php/polimi-sport', ), ), 'AssertionConsumerService' => array ( 0 => array ( 'index' => 0, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST', 'Location' => 'https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml2-acs.php/polimi-sport', ), 1 => array ( 'index' => 1, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:browser-post', 'Location' => 'https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml1-acs.php/polimi-sport', ), 2 => array ( 'index' => 2, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact', 'Location' => 'https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml2-acs.php/polimi-sport', ), 3 => array ( 'index' => 3, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:artifact-01', 'Location' => 'https://my.sportpolimi.it/simplesaml/module.php/saml/sp/saml1-acs.php/polimi-sport/artifact', ), ), 'certData' => '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', );