Čeština | Dansk | Deutsch | English | Español | eesti keel | Euskara | Suomeksi | Français | עִבְרִית | Hrvatski | Magyar | Bahasa Indonesia | Italiano | 日本語 | Lëtzebuergesch | Lietuvių kalba | Latviešu | Nederlands | Nynorsk | Bokmål | Język polski | Português | Português brasileiro | Românește | русский язык | Sámegiella | Slovenščina | Srpski | Svenska | Türkçe | 简体中文 | 繁體中文

SAML 2.0 IdP metaandmed

Need on SimpleSAMLphp poolt sulle genereeritud metaandmed. Võid saata need metaandmed usaldatavatele partneritele usaldatava föderatsiooni loomiseks.

Metaandmete XML-i on võimalik saada spetsiaalselt aadressilt:

https://sso.alfi.einfra.hu/simplesaml/saml2/idp/metadata.php

Metaandmed

SAML 2.0 metaandmete XML-vormingus:

<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sso.alfi.einfra.hu/simplesaml/saml2/idp/metadata.php">
  <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.alfi.einfra.hu/simplesaml/saml2/idp/SingleLogoutService.php"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.alfi.einfra.hu/simplesaml/saml2/idp/SSOService.php"/>
  </md:IDPSSODescriptor>
  <md:Organization>
    <md:OrganizationName xml:lang="hu">ALFI eduID Proxy (STAGING)</md:OrganizationName>
    <md:OrganizationName xml:lang="en">ALFI eduID Proxy (STAGING)</md:OrganizationName>
    <md:OrganizationDisplayName xml:lang="en">ALFI eduID Proxy (STAGING)</md:OrganizationDisplayName>
    <md:OrganizationDisplayName xml:lang="hu">ALFI eduID Proxy (STAGING)</md:OrganizationDisplayName>
    <md:OrganizationURL xml:lang="en">https://sso.alfi.kifu.hu</md:OrganizationURL>
    <md:OrganizationURL xml:lang="hu">https://sso.alfi.kifu.hu</md:OrganizationURL>
  </md:Organization>
  <md:ContactPerson contactType="technical">
    <md:GivenName>ALFI</md:GivenName>
    <md:EmailAddress>mailto:alfi@niif.hu</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>

SimpleSAMLphp formaadis: kasuta seda siis, kui ka teine pool kasutab SimpleSAMLphp-d:

$metadata['https://sso.alfi.einfra.hu/simplesaml/saml2/idp/metadata.php'] = array (
  'metadata-set' => 'saml20-idp-remote',
  'entityid' => 'https://sso.alfi.einfra.hu/simplesaml/saml2/idp/metadata.php',
  'SingleSignOnService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://sso.alfi.einfra.hu/simplesaml/saml2/idp/SSOService.php',
    ),
  ),
  'SingleLogoutService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://sso.alfi.einfra.hu/simplesaml/saml2/idp/SingleLogoutService.php',
    ),
  ),
  'certData' => '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',
  'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
  'OrganizationName' => 
  array (
    'hu' => 'ALFI eduID Proxy (STAGING)',
    'en' => 'ALFI eduID Proxy (STAGING)',
  ),
  'OrganizationDisplayName' => 
  array (
    'en' => 'ALFI eduID Proxy (STAGING)',
    'hu' => 'ALFI eduID Proxy (STAGING)',
  ),
  'OrganizationURL' => 
  array (
    'en' => 'https://sso.alfi.kifu.hu',
    'hu' => 'https://sso.alfi.kifu.hu',
  ),
  'contacts' => 
  array (
    0 => 
    array (
      'emailAddress' => 'alfi@niif.hu',
      'contactType' => 'technical',
      'givenName' => 'ALFI',
    ),
  ),
);

Sertifikaadid

Lae alla X509 sertifikaadid PEM kodeeringus failidena.