Metadati SAML 2.0 IdP
Questi sono i metadati che SimpleSAMLphp ha generato e che possono essere inviati ai partner fidati per creare una federazione tra siti.
Si possono ottenere i metadati in XML dall'URL dedicata:
https://www.pdrma.org/saml-idp/saml2/idp/metadata.php
Metadati
Metadati SAML 2.0 in formato XML:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://www.pdrma.org/saml-idp/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.pdrma.org/saml-idp/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.pdrma.org/saml-idp/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Bill</md:GivenName> <md:SurName>Pitts</md:SurName> <md:EmailAddress>mailto:bpitts@pdrma.org</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
In formato flat per SimpleSAMLphp - da utilizzare se dall'altra parte c'è un'entità che utilizza SimpleSAMLphp
$metadata['https://www.pdrma.org/saml-idp/saml2/idp/metadata.php'] = [ 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://www.pdrma.org/saml-idp/saml2/idp/metadata.php', 'SingleSignOnService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://www.pdrma.org/saml-idp/saml2/idp/SSOService.php', ], ], 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://www.pdrma.org/saml-idp/saml2/idp/SingleLogoutService.php', ], ], 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => [ [ 'emailAddress' => 'bpitts@pdrma.org', 'contactType' => 'technical', 'givenName' => 'Bill', 'surName' => 'Pitts', ], ], ];
Certificati
Scarica i certificati X509 come file PEM-encoded