Métadonnées d'IdP SAML 2.0
Voici les métadonnées générées par SimpleSAMLphp. Vous pouvez les envoyer à vos partenaires de confiances pour construire une fédération d'identité.
Vous pouvez obtenir ces métadonnées XML depuis une URL dédiée:
https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/metadata.php
Métadonnées
Au format XML de métadonnées SAML 2.0
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Jan</md:GivenName>
<md:SurName>Kohnert</md:SurName>
<md:EmailAddress>mailto:jan.kohnert@n4.de</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
Au format à plat SimpleSAMLphp - à utiliser si vous avez une installation SimpleSAMLphp sur la partie adverse :
$metadata['https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/metadata.php'] = [
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/metadata.php',
'SingleSignOnService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/SSOService.php',
],
],
'SingleLogoutService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://ai-tool-sso.staging.ingress-team-elster.n4group.eu/saml2/idp/SingleLogoutService.php',
],
],
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' => [
[
'emailAddress' => 'jan.kohnert@n4.de',
'contactType' => 'technical',
'givenName' => 'Jan',
'surName' => 'Kohnert',
],
],
];
Certificats
Télécharger les certificats X509 en tant que fichiers encodés PEM.