Metadati Shib 1.3 IdP
Questi sono i metadati che SimpleSAMLphp ha generato e che possono essere inviati ai partner fidati per creare una federazione tra siti.
Si possono ottenere i metadati in XML dall'URL dedicata:
https://sso.drybox.fr/shib13/idp/metadata.php?output=xml
Metadati
Metadati SAML 2.0 in formato XML:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sso.drybox.fr/shib13/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.drybox.fr/shib13/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Administrator</md:GivenName>
<md:EmailAddress>mailto:cloud@drybox.fr</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
In formato flat per SimpleSAMLphp - da utilizzare se dall'altra parte c'è un'entità che utilizza SimpleSAMLphp
$metadata['https://sso.drybox.fr/shib13/idp/metadata.php'] = array ( 'metadata-set' => 'shib13-idp-remote', 'entityid' => 'https://sso.drybox.fr/shib13/idp/metadata.php', 'SingleSignOnService' => 'https://sso.drybox.fr/shib13/idp/SSOService.php', 'certData' => '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', 'NameIDFormat' => 'urn:mace:shibboleth:1.0:nameIdentifier', );