SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
http://my.efko.ru/simplesaml/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="http://my.efko.ru/simplesaml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="http://my.efko.ru/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="http://my.efko.ru/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Administrator</md:GivenName> <md:EmailAddress>a.ostroverhov@efko.ru</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['http://my.efko.ru/simplesaml/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'http://my.efko.ru/simplesaml/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'http://my.efko.ru/simplesaml/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'http://my.efko.ru/simplesaml/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => array ( 0 => array ( 'emailAddress' => 'a.ostroverhov@efko.ru', 'contactType' => 'technical', 'givenName' => 'Administrator', ), ), );
Certificates
Download the X509 certificates as PEM-encoded files.