Métadonnées d'IdP SAML 2.0
Voici les métadonnées générées par SimpleSAMLphp. Vous pouvez les envoyer à vos partenaires de confiances pour construire une fédération d'identité.
Vous pouvez obtenir ces métadonnées XML depuis une URL dédiée:
https://sso.sosk.io/saml2/idp/metadata.php
Métadonnées
Au format XML de métadonnées SAML 2.0
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sso.sosk.io/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.sosk.io/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.sosk.io/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Admin</md:GivenName>
<md:EmailAddress>alertes@acipia.fr</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
Au format à plat SimpleSAMLphp - à utiliser si vous avez une installation SimpleSAMLphp sur la partie adverse :
$metadata['https://sso.sosk.io/saml2/idp/metadata.php'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://sso.sosk.io/saml2/idp/metadata.php',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://sso.sosk.io/saml2/idp/SSOService.php',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://sso.sosk.io/saml2/idp/SingleLogoutService.php',
),
),
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'alertes@acipia.fr',
'contactType' => 'technical',
'givenName' => 'Admin',
),
),
);
Certificats
Télécharger les certificats X509 en tant que fichiers encodés PEM.