Metadados SAML 2.0 IdP
De seguida pode encontrar os metadados gerados pelo SimpleSAMLphp. Pode enviar este documento de metadados aos seus parceiros para configurar uma federação.
Pode obter os metadados em XML num URL dedicado:
https://idp.csfk.mta.hu/simplesaml/saml2/idp/metadata.php
Metadados
Metadados no formato XML SAML 2.0
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.csfk.mta.hu/simplesaml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.csfk.mta.hu/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.csfk.mta.hu/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>CSFK</md:GivenName> <md:SurName>AAI</md:SurName> <md:EmailAddress>info@csfk.mta.hu</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
Metadados no formato ficheiro de configuração do SimpleSAMLphp. Use esta alternativa se usar uma entidade SimpleSAMLphp no outro extremo:
$metadata['https://idp.csfk.mta.hu/simplesaml/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://idp.csfk.mta.hu/simplesaml/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.csfk.mta.hu/simplesaml/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.csfk.mta.hu/simplesaml/saml2/idp/SingleLogoutService.php', ), ), 'certData' => 'MIIDgTCCAmmgAwIBAgIJALxEZGHm8PpVMA0GCSqGSIb3DQEBCwUAMFcxCzAJBgNVBAYTAkhVMQowCAYDVQQIDAEgMQ8wDQYDVQQHDAZTb3Byb24xETAPBgNVBAoMCE1UQSBDU0ZLMRgwFgYDVQQDDA9pZHAuY3Nmay5tdGEuaHUwHhcNMTgwMzA4MDgyNjA2WhcNMzgwMzA3MDgyNjA2WjBXMQswCQYDVQQGEwJIVTEKMAgGA1UECAwBIDEPMA0GA1UEBwwGU29wcm9uMREwDwYDVQQKDAhNVEEgQ1NGSzEYMBYGA1UEAwwPaWRwLmNzZmsubXRhLmh1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0wliIy7UVyq99Zz61rxkICd3E+QBOnqjpT0IzVTCSNm5lqGXtCAq9cO8N1dKj6/sF2KoqJ0WPnTjs6lDRdTZqpk1WzGmcnIg38jxeKcrUKGqjliAqZ1HrZu8hiV+IsqsPj/HL8PCiqAV6XkCcMP3bSDfq8o1rnQHgWJLJknlXBd20Dpe7wtvG59hIRUF7zzVhrd8tbdZn9SBjd8uBlYBsk1ISgn6VormJ91JHaiYbIShYn3mSiWTbSb+dwK/0sGS/czAGaFVJ0cYVRRQoNn+zxEfFG/VHQqmgHFLJCOC0nMA1s/RPkLSubOyPRADHv4QF/eY5m5F2V1gQ0TxHFDOWwIDAQABo1AwTjAdBgNVHQ4EFgQU+zCKDWjzC1C3YSOF29sWkB2GoTwwHwYDVR0jBBgwFoAU+zCKDWjzC1C3YSOF29sWkB2GoTwwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAfs2vaXwwsCSV4r5ZQB+yXfFrTPsuVIZ4UgvdrawsZeXHmgS2ezkAYI7g0vDXYwXjT2zb1ayYDCs7AL9trcAUy3PbDiz9+PsJUoxE6CFCBX+a5bAoXnFkDBSXsB9J39TBthY7CYESicPwCV6wMABOvT0UzVN+l8qUZwTojrv4LquSeNa4p3BAVn+SfbKhu2TuXqoR7bzegdN10vPWSkNEpUyCdMnRvSDDRzy+r5hrsReOQBo4LwFiaILhVHenoXqFBVKRn/8a4zAqGjF4DvINnBV7+6TQev9WnQzCmgMnmesZ4lSevfKz2so/HE8GPXGQuqaQz57Mb/qmo9OAYjklog==', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => array ( 0 => array ( 'emailAddress' => 'info@csfk.mta.hu', 'contactType' => 'technical', 'givenName' => 'CSFK', 'surName' => 'AAI', ), ), );
Certificates
Download the X509 certificates as PEM-encoded files.