SAML 2.0 IdP metaandmed
Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.
Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:
https://idp.talentry.tech/simplesaml/saml2/idp/metadata.php
Metaandmed
SAML 2.0 metaandmete XML-vormingus:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.talentry.tech/simplesaml/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>MIIDbDCCAlQCCQCEHVlukFlLmjANBgkqhkiG9w0BAQUFADB4MQswCQYDVQQGEwJERTEQMA4GA1UECAwHQmF2YXJpYTEPMA0GA1UEBwwGTXVuaWNoMRYwFAYDVQQKDA1UYWxlbnRyeSBHbWJIMRQwEgYDVQQLDAtFbmdpbmVlcmluZzEYMBYGA1UEAwwPaWRwLnRhbGVudHJ5LmRlMB4XDTIxMDMxNjEzNTU1M1oXDTMxMDMxNDEzNTU1M1oweDELMAkGA1UEBhMCREUxEDAOBgNVBAgMB0JhdmFyaWExDzANBgNVBAcMBk11bmljaDEWMBQGA1UECgwNVGFsZW50cnkgR21iSDEUMBIGA1UECwwLRW5naW5lZXJpbmcxGDAWBgNVBAMMD2lkcC50YWxlbnRyeS5kZTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANBKvLQSckCMrh/x4c4uKMRJHv7p4wyB7se/gqIngNVopDqnrBkbzvvpASY8x+DI+tMHYwTEYMjjCGU6+Wd1u71ac6aKqRvEkZktW99NhqbJ2B0t1ZD0lAAtPabt4pNJ5iC0WhfXy8MXGKkuiA8XIC/xGrfJhmCxL5+detKeNv6VrAMR1C23Sl3o03f7IABVCgkg+62/E2W4lIJYCXqvMrLdl3b4jnFDcGU9LmGL0Fd8ryzyZWJuWa89PHdIs4BFMUuupkZc7myAev23bKd32fSb5+kYFod90ZXvC7+PEc4qUrm8V7qT2mkqQ0x1FamS7CrfNdJs3yrYRoe1tsfYxdsCAwEAATANBgkqhkiG9w0BAQUFAAOCAQEAf4MjIxkjm/Zxw3G22OerZqnLv4hYblcEXeBibWnR4kn6miiq6lTQY9sebb5FubT4l/I86oKTeDMhAU743qJKkrbMDEjXo9yYL61TdSnNoap/qJCKQkJ3W17dvGuGpnfeXNC7nTxriQFuBUlLleRn/M7/neyYFCiGdoFx14kwLRlq5CoUdFlxVoueWj3t7A7Hbo+/OppyS5YKcKVYI1ictxHV4BVWMarduOXQCQBxVxK8yBeZDc1EAHHVBUSI2bLRICBHDQIVIng5fXgxWERWnRitOoRP3MZK2SYiil2kFwJFEd0Uh4pGoJGNy3Py5lNr+FNq5VYdlgwxwNLvW889bw==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.talentry.tech/simplesaml/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.talentry.tech/simplesaml/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Administrator</md:GivenName>
<md:EmailAddress>mailto:f.struebe@talentry.com</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:
$metadata['https://idp.talentry.tech/simplesaml/saml2/idp/metadata.php'] = [
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://idp.talentry.tech/simplesaml/saml2/idp/metadata.php',
'SingleSignOnService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://idp.talentry.tech/simplesaml/saml2/idp/SSOService.php',
],
],
'SingleLogoutService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://idp.talentry.tech/simplesaml/saml2/idp/SingleLogoutService.php',
],
],
'certData' => 'MIIDbDCCAlQCCQCEHVlukFlLmjANBgkqhkiG9w0BAQUFADB4MQswCQYDVQQGEwJERTEQMA4GA1UECAwHQmF2YXJpYTEPMA0GA1UEBwwGTXVuaWNoMRYwFAYDVQQKDA1UYWxlbnRyeSBHbWJIMRQwEgYDVQQLDAtFbmdpbmVlcmluZzEYMBYGA1UEAwwPaWRwLnRhbGVudHJ5LmRlMB4XDTIxMDMxNjEzNTU1M1oXDTMxMDMxNDEzNTU1M1oweDELMAkGA1UEBhMCREUxEDAOBgNVBAgMB0JhdmFyaWExDzANBgNVBAcMBk11bmljaDEWMBQGA1UECgwNVGFsZW50cnkgR21iSDEUMBIGA1UECwwLRW5naW5lZXJpbmcxGDAWBgNVBAMMD2lkcC50YWxlbnRyeS5kZTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANBKvLQSckCMrh/x4c4uKMRJHv7p4wyB7se/gqIngNVopDqnrBkbzvvpASY8x+DI+tMHYwTEYMjjCGU6+Wd1u71ac6aKqRvEkZktW99NhqbJ2B0t1ZD0lAAtPabt4pNJ5iC0WhfXy8MXGKkuiA8XIC/xGrfJhmCxL5+detKeNv6VrAMR1C23Sl3o03f7IABVCgkg+62/E2W4lIJYCXqvMrLdl3b4jnFDcGU9LmGL0Fd8ryzyZWJuWa89PHdIs4BFMUuupkZc7myAev23bKd32fSb5+kYFod90ZXvC7+PEc4qUrm8V7qT2mkqQ0x1FamS7CrfNdJs3yrYRoe1tsfYxdsCAwEAATANBgkqhkiG9w0BAQUFAAOCAQEAf4MjIxkjm/Zxw3G22OerZqnLv4hYblcEXeBibWnR4kn6miiq6lTQY9sebb5FubT4l/I86oKTeDMhAU743qJKkrbMDEjXo9yYL61TdSnNoap/qJCKQkJ3W17dvGuGpnfeXNC7nTxriQFuBUlLleRn/M7/neyYFCiGdoFx14kwLRlq5CoUdFlxVoueWj3t7A7Hbo+/OppyS5YKcKVYI1ictxHV4BVWMarduOXQCQBxVxK8yBeZDc1EAHHVBUSI2bLRICBHDQIVIng5fXgxWERWnRitOoRP3MZK2SYiil2kFwJFEd0Uh4pGoJGNy3Py5lNr+FNq5VYdlgwxwNLvW889bw==',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' => [
[
'emailAddress' => 'f.struebe@talentry.com',
'contactType' => 'technical',
'givenName' => 'Administrator',
],
],
];
Sertifikaadid
Lae alla X509 sertifikaadid PEM kodeeringus failidena.