Metadati SAML 2.0 IdP
Questi sono i metadati che SimpleSAMLphp ha generato e che possono essere inviati ai partner fidati per creare una federazione tra siti.
Si possono ottenere i metadati in XML dall'URL dedicata:
https://idp.sapientia.hu/simplesaml/saml2/idp/metadata.php
Metadati
Metadati SAML 2.0 in formato XML:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.sapientia.hu/simplesaml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIDiTCCAnGgAwIBAgIUPY0ZsaO4cNd/InfpAXoKebsGJXIwDQYJKoZIhvcNAQELBQAwVDELMAkGA1UEBhMCSFUxDTALBgNVBAgMBFBlc3QxCzAJBgNVBAcMAkJwMQ4wDAYDVQQKDAVTU1pIRjEZMBcGA1UEAwwQaWRwLnNhcGllbnRpYS5odTAeFw0yMTA1MzExMjUxMjhaFw0zMTA1MzExMjUxMjhaMFQxCzAJBgNVBAYTAkhVMQ0wCwYDVQQIDARQZXN0MQswCQYDVQQHDAJCcDEOMAwGA1UECgwFU1NaSEYxGTAXBgNVBAMMEGlkcC5zYXBpZW50aWEuaHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJGe8ya5sfSUHX2r7z9XF8igW4AJKLEC5W0LnjchPNobU5rd0IVqktkMPIvIKua2jR88hP1nL7CVItxvsDQJgTkLF5NzDmWUD40o0yTqnVeTfaeG4o5O6Yk6TLxn9ZYXhuw36UwENGl3WXvw+NWC2PFXngEF/H6U4cSk7KF/0q5xWskf6jhj6+jNr3suWfFjIUq1DqO9OQfNC9YugsN029bndA3RwiQuVLHANO4llEb61VlJh+qgF/JycQOdR6d9x6XkfioSE53LFNqkC/2kyf63yTksKwlokCIIhG5FtIFlLazeMPLls82MpazPW3rEkXfeSHGqRodRpfFWvt8Gz/AgMBAAGjUzBRMB0GA1UdDgQWBBRMWFX696QXt5DxD4ts4vhvx4No/zAfBgNVHSMEGDAWgBRMWFX696QXt5DxD4ts4vhvx4No/zAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCLMufgMC+Zki06tM/mO/jXZL94Zz+YTF2OiSYiqh9vT/ywsa0ODgnWyN20UIqizsuS3+Wzfio3/lTxDP1b9BlbFlNEMxmQSAi0T+KVaBhNGZ4zaMNMzHeDUSYSeG9r2DqVM/vJNq7A4lR7TIiFa4PFHMklRG3oiZN0FAWGCHISQjTxSWHQOR/mhzqN9T0eQbjG1QohUzSyvAiO58JFM/dt72YoDza7I2MZytWMiIT1Pe68lcdV9Z8I+2XdtWBkQb7cJh+cNs8dlc0g6TyKuDCMfL1OMHAd4kmgH9fTvWZFZG8RTTjspX3paW/1bnJ5hBuMJxyqHzRMbWruk2EZVvTX</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sapientia.hu/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sapientia.hu/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Hugyi</md:GivenName> <md:SurName>Zoltán</md:SurName> <md:EmailAddress>mailto:informatika@sapientia.hu</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
In formato flat per SimpleSAMLphp - da utilizzare se dall'altra parte c'è un'entità che utilizza SimpleSAMLphp
$metadata['https://idp.sapientia.hu/simplesaml/saml2/idp/metadata.php'] = [ 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://idp.sapientia.hu/simplesaml/saml2/idp/metadata.php', 'SingleSignOnService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.sapientia.hu/simplesaml/saml2/idp/SSOService.php', ], ], 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.sapientia.hu/simplesaml/saml2/idp/SingleLogoutService.php', ], ], 'certData' => 'MIIDiTCCAnGgAwIBAgIUPY0ZsaO4cNd/InfpAXoKebsGJXIwDQYJKoZIhvcNAQELBQAwVDELMAkGA1UEBhMCSFUxDTALBgNVBAgMBFBlc3QxCzAJBgNVBAcMAkJwMQ4wDAYDVQQKDAVTU1pIRjEZMBcGA1UEAwwQaWRwLnNhcGllbnRpYS5odTAeFw0yMTA1MzExMjUxMjhaFw0zMTA1MzExMjUxMjhaMFQxCzAJBgNVBAYTAkhVMQ0wCwYDVQQIDARQZXN0MQswCQYDVQQHDAJCcDEOMAwGA1UECgwFU1NaSEYxGTAXBgNVBAMMEGlkcC5zYXBpZW50aWEuaHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJGe8ya5sfSUHX2r7z9XF8igW4AJKLEC5W0LnjchPNobU5rd0IVqktkMPIvIKua2jR88hP1nL7CVItxvsDQJgTkLF5NzDmWUD40o0yTqnVeTfaeG4o5O6Yk6TLxn9ZYXhuw36UwENGl3WXvw+NWC2PFXngEF/H6U4cSk7KF/0q5xWskf6jhj6+jNr3suWfFjIUq1DqO9OQfNC9YugsN029bndA3RwiQuVLHANO4llEb61VlJh+qgF/JycQOdR6d9x6XkfioSE53LFNqkC/2kyf63yTksKwlokCIIhG5FtIFlLazeMPLls82MpazPW3rEkXfeSHGqRodRpfFWvt8Gz/AgMBAAGjUzBRMB0GA1UdDgQWBBRMWFX696QXt5DxD4ts4vhvx4No/zAfBgNVHSMEGDAWgBRMWFX696QXt5DxD4ts4vhvx4No/zAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCLMufgMC+Zki06tM/mO/jXZL94Zz+YTF2OiSYiqh9vT/ywsa0ODgnWyN20UIqizsuS3+Wzfio3/lTxDP1b9BlbFlNEMxmQSAi0T+KVaBhNGZ4zaMNMzHeDUSYSeG9r2DqVM/vJNq7A4lR7TIiFa4PFHMklRG3oiZN0FAWGCHISQjTxSWHQOR/mhzqN9T0eQbjG1QohUzSyvAiO58JFM/dt72YoDza7I2MZytWMiIT1Pe68lcdV9Z8I+2XdtWBkQb7cJh+cNs8dlc0g6TyKuDCMfL1OMHAd4kmgH9fTvWZFZG8RTTjspX3paW/1bnJ5hBuMJxyqHzRMbWruk2EZVvTX', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => [ [ 'emailAddress' => 'informatika@sapientia.hu', 'contactType' => 'technical', 'givenName' => 'Hugyi', 'surName' => 'Zoltán', ], ], ];
Certificati
Scarica i certificati X509 come file PEM-encoded