Metadatos IdP SAML 2.0
Aquí están los metadatos que SimpleSAMLphp ha generado. Puede enviar este documento de metadatos a sus socios de confianza para configurar una federación.
Puede obtener una URL con los metadatos xml:
https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/metadata.php
Metadatos
En formato xml de metadatos SAML 2.0:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Jan</md:GivenName>
<md:SurName>Kohnert</md:SurName>
<md:EmailAddress>mailto:jan.kohnert@n4.de</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
En un fichero de formato SimpleSAMLphp - utilice esta opción si está usando una entidad SimpleSAMLphp en el otro extremo:
$metadata['https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/metadata.php'] = [
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/metadata.php',
'SingleSignOnService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/SSOService.php',
],
],
'SingleLogoutService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/SingleLogoutService.php',
],
],
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' => [
[
'emailAddress' => 'jan.kohnert@n4.de',
'contactType' => 'technical',
'givenName' => 'Jan',
'surName' => 'Kohnert',
],
],
];
Certificados
Descargar los certificados X509 en formato PEM.