SAML 2.0 IdP Metadata
SimpleSAMLphp har har genererat följande metadata. För att sätta upp en betrodd federation kan du skicka metadata till de parter du har förtroende för.
Du kan hämta metadata i XML-format på dedicerad URL:
https://sso.alfi.einfra.hu/simplesaml/saml2/idp/metadata.php
Metadata
I SAML 2.0 Metadata XML-format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sso.alfi.einfra.hu/simplesaml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.alfi.einfra.hu/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.alfi.einfra.hu/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:Organization> <md:OrganizationName xml:lang="hu">ALFI eduID Proxy (STAGING)</md:OrganizationName> <md:OrganizationName xml:lang="en">ALFI eduID Proxy (STAGING)</md:OrganizationName> <md:OrganizationDisplayName xml:lang="en">ALFI eduID Proxy (STAGING)</md:OrganizationDisplayName> <md:OrganizationDisplayName xml:lang="hu">ALFI eduID Proxy (STAGING)</md:OrganizationDisplayName> <md:OrganizationURL xml:lang="en">https://sso.alfi.kifu.hu</md:OrganizationURL> <md:OrganizationURL xml:lang="hu">https://sso.alfi.kifu.hu</md:OrganizationURL> </md:Organization> <md:ContactPerson contactType="technical"> <md:GivenName>ALFI</md:GivenName> <md:EmailAddress>mailto:alfi@niif.hu</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
I filformatet för simpleSAML, använd detta detta format om SimpleSAMLphp används i mottagende sida:
$metadata['https://sso.alfi.einfra.hu/simplesaml/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://sso.alfi.einfra.hu/simplesaml/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://sso.alfi.einfra.hu/simplesaml/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://sso.alfi.einfra.hu/simplesaml/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'OrganizationName' => array ( 'hu' => 'ALFI eduID Proxy (STAGING)', 'en' => 'ALFI eduID Proxy (STAGING)', ), 'OrganizationDisplayName' => array ( 'en' => 'ALFI eduID Proxy (STAGING)', 'hu' => 'ALFI eduID Proxy (STAGING)', ), 'OrganizationURL' => array ( 'en' => 'https://sso.alfi.kifu.hu', 'hu' => 'https://sso.alfi.kifu.hu', ), 'contacts' => array ( 0 => array ( 'emailAddress' => 'alfi@niif.hu', 'contactType' => 'technical', 'givenName' => 'ALFI', ), ), );
Certifikat
Hämta X509-certifikaten som PEM-kodade filer.