SAML 2.0 IdP Metadata
Dit is de metadata die automatisch is gegenereerd door SimpleSAMLphp. U kunt deze metadata uitwisselen met uw federatiepartners.
U kunt deze directe URL gebruiken om de metadata XML op te vragen:
https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML formaat:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/SingleLogoutService.php"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/SSOService.php"/>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Web</md:GivenName>
<md:SurName>Admin</md:SurName>
<md:EmailAddress>admin@d219.org</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
In SimpleSAMLphp flat file formaat - gebruik dit wanneer uw federatiepartner ook SimpleSAMLphp gebruikt
$metadata['https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/metadata.php'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/metadata.php',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST',
'Location' => 'https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/SSOService.php',
),
1 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/SSOService.php',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST',
'Location' => 'https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/SingleLogoutService.php',
),
1 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://gssoa.niles-hs.k12.il.us/simplesaml/saml2/idp/SingleLogoutService.php',
),
),
'certData' => 'MIICvTCCAiYCCQC+ioiswlrgLjANBgkqhkiG9w0BAQUFADCBojELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAklMMQ8wDQYDVQQHEwZTa29raWUxMDAuBgNVBAoTJ05pbGVzIFRvd25zaGlwIEhpZ2ggU2Nob29sIERpc3RyaWN0IDIxOTEMMAoGA1UECxMDd2ViMRUwEwYDVQQDEwxEYXZpZCBCZW5oYW0xHjAcBgkqhkiG9w0BCQEWD2RhdmJlbkBkMjE5Lm9yZzAeFw0wOTEyMzExNjQzNTJaFw0zNzA1MTcxNjQzNTJaMIGiMQswCQYDVQQGEwJVUzELMAkGA1UECBMCSUwxDzANBgNVBAcTBlNrb2tpZTEwMC4GA1UEChMnTmlsZXMgVG93bnNoaXAgSGlnaCBTY2hvb2wgRGlzdHJpY3QgMjE5MQwwCgYDVQQLEwN3ZWIxFTATBgNVBAMTDERhdmlkIEJlbmhhbTEeMBwGCSqGSIb3DQEJARYPZGF2YmVuQGQyMTkub3JnMIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCqlz6VP3FvaCfupriqwkxJUuqDcnFeH7CbOIePN04I/4Hw+YN4EemL1h9gxh4oAGO9XMjuZiNj97QXcZzGVzNN4RWSUpv51pZ484iT1EVF2HMlIYBAdsjpplGt2/AuMMy0rKy0cA7iq5SeP61fTko6HqGiUdo30puKqUtv/Y8KywIDAQABMA0GCSqGSIb3DQEBBQUAA4GBAJQBeG/aePyH57jg2GcNcekcThwP+XzrzyUGDy+YUumkV8AI88CJImasScO9dz3rwCb4WmLihx8hCEKyppwikGXv25i+xsWHbut1TmBtHMDOcEmounhfqH+kNjKEJ39eOtIb0V+Hh2EN6Cl7tMgXzXOkaMutRDH0paW9e6FEtPC1',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress',
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'admin@d219.org',
'contactType' => 'technical',
'givenName' => 'Web',
'surName' => 'Admin',
),
),
);
Certificaten
Download de X509-certificaten in PEM-formaat.