Čeština | Dansk | Deutsch | English | Español | eesti keel | Euskara | Suomeksi | Français | עִבְרִית | Hrvatski | Magyar | Bahasa Indonesia | Italiano | 日本語 | Lëtzebuergesch | Lietuvių kalba | Latviešu | Nederlands | Nynorsk | Bokmål | Język polski | Português | Português brasileiro | Românește | русский язык | Sámegiella | Slovenščina | Srpski | Svenska | Türkçe | 简体中文 | 繁體中文

SAML 2.0 IdP metaandmed

Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.

Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:

https://saml.samskolan.fi/simplesamlphp/saml2/idp/metadata.php

Metaandmed

SAML 2.0 metaandmete XML-vormingus:

<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://saml.samskolan.fi/simplesamlphp/saml2/idp/metadata.php">
  <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.samskolan.fi/simplesamlphp/saml2/idp/SingleLogoutService.php"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.samskolan.fi/simplesamlphp/saml2/idp/SSOService.php"/>
  </md:IDPSSODescriptor>
  <md:ContactPerson contactType="technical">
    <md:GivenName>Administrator</md:GivenName>
    <md:EmailAddress>mailto:support@samskolan.fi</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>

SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:

$metadata['https://saml.samskolan.fi/simplesamlphp/saml2/idp/metadata.php'] = [
    'metadata-set' => 'saml20-idp-remote',
    'entityid' => 'https://saml.samskolan.fi/simplesamlphp/saml2/idp/metadata.php',
    'SingleSignOnService' => [
        [
            'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
            'Location' => 'https://saml.samskolan.fi/simplesamlphp/saml2/idp/SSOService.php',
        ],
    ],
    'SingleLogoutService' => [
        [
            'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
            'Location' => 'https://saml.samskolan.fi/simplesamlphp/saml2/idp/SingleLogoutService.php',
        ],
    ],
    'certData' => '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',
    'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
    'contacts' => [
        [
            'emailAddress' => 'support@samskolan.fi',
            'contactType' => 'technical',
            'givenName' => 'Administrator',
        ],
    ],
];

Sertifikaadid

Lae alla X509 sertifikaadid PEM kodeeringus failidena.