SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://fvm.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://fvm.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fvm.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fvm.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>FINKI</md:GivenName>
<md:SurName>FCC</md:SurName>
<md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://fvm.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://fvm.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://fvm.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://fvm.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php',
),
),
'certData' => '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',
'NameIDFormat' =>
array (
0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent',
),
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'fcc@finki.ukim.mk',
'contactType' => 'technical',
'givenName' => 'FINKI',
'surName' => 'FCC',
),
),
);
Certificates
Download the X509 certificates as PEM-encoded files.