SAML 2.0 IdP Metaadatok
Ezeket a metaadatokat a SimpleSAMLphp generálta. Ezt a dokumentumot küldheti el föderációs partnerei számára.
A következő címről töltheti le a metaadatokat:
https://idp.nye.hu/simplesaml/saml2/idp/metadata.php
Metaadatok
SAML 2.0 XML formátumban:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.nye.hu/simplesaml/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">nye.hu</shibmd:Scope>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.nye.hu/simplesaml/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.nye.hu/simplesaml/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:Organization>
<md:OrganizationName xml:lang="en">University of Nyiregyhaza</md:OrganizationName>
<md:OrganizationName xml:lang="hu">Nyíregyházi Egyetem</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="en">University of Nyiregyhaza</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="hu">Nyíregyházi Egyetem</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="en">https://www.nye.hu/</md:OrganizationURL>
<md:OrganizationURL xml:lang="hu">https://www.nye.hu/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="technical">
<md:GivenName>Halasz</md:GivenName>
<md:SurName>Attila</md:SurName>
<md:EmailAddress>mailto:halasz.attila@nye.hu</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
SimpleSAMLphp fájl formátumban - akkor használható, ha a másik oldalon SimpleSAMLphp van:
$metadata['https://idp.nye.hu/simplesaml/saml2/idp/metadata.php'] = [
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://idp.nye.hu/simplesaml/saml2/idp/metadata.php',
'SingleSignOnService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://idp.nye.hu/simplesaml/saml2/idp/SSOService.php',
],
],
'SingleLogoutService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://idp.nye.hu/simplesaml/saml2/idp/SingleLogoutService.php',
],
],
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'OrganizationName' => [
'en' => 'University of Nyiregyhaza',
'hu' => 'Nyíregyházi Egyetem',
],
'OrganizationDisplayName' => [
'en' => 'University of Nyiregyhaza',
'hu' => 'Nyíregyházi Egyetem',
],
'OrganizationURL' => [
'en' => 'https://www.nye.hu/',
'hu' => 'https://www.nye.hu/',
],
'scope' => [
'nye.hu',
],
'contacts' => [
[
'emailAddress' => 'halasz.attila@nye.hu',
'contactType' => 'technical',
'givenName' => 'Halasz',
'surName' => 'Attila',
],
],
];
Tanúsítványok.
PEM formátumú X509 tanúsítvány letöltése.