SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://stomfak.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://stomfak.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stomfak.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stomfak.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>FINKI</md:GivenName>
<md:SurName>FCC</md:SurName>
<md:EmailAddress>fcc@finki.ukim.mk</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://stomfak.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://stomfak.idp-proxy.finki.ukim.mk/saml2/idp/metadata.php',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://stomfak.idp-proxy.finki.ukim.mk/saml2/idp/SSOService.php',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://stomfak.idp-proxy.finki.ukim.mk/saml2/idp/SingleLogoutService.php',
),
),
'certData' => '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',
'NameIDFormat' =>
array (
0 => 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent',
),
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'fcc@finki.ukim.mk',
'contactType' => 'technical',
'givenName' => 'FINKI',
'surName' => 'FCC',
),
),
);
Certificates
Download the X509 certificates as PEM-encoded files.