Métadonnées d'IdP SAML 2.0
Voici les métadonnées générées par SimpleSAMLphp. Vous pouvez les envoyer à vos partenaires de confiances pour construire une fédération d'identité.
Vous pouvez obtenir ces métadonnées XML depuis une URL dédiée:
https://idp.criann.fr/saml2/idp/metadata.php
Métadonnées
Au format XML de métadonnées SAML 2.0
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.criann.fr/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIEmzCCA4OgAwIBAgIJAPvEN/keqokTMA0GCSqGSIb3DQEBBQUAMIGPMQswCQYDVQQGEwJGUjESMBAGA1UECBMJTm9ybWFuZGllMSEwHwYDVQQHExhTYWludC1FdGllbm5lIGR1IFJvdXZyYXkxDzANBgNVBAoTBkNSSUFOTjEWMBQGA1UEAxMNaWRwLmNyaWFubi5mcjEgMB4GCSqGSIb3DQEJARYRc3VwcG9ydEBjcmlhbm4uZnIwHhcNMTcwOTEwMTMzMTUzWhcNMjcwOTEwMTMzMTUzWjCBjzELMAkGA1UEBhMCRlIxEjAQBgNVBAgTCU5vcm1hbmRpZTEhMB8GA1UEBxMYU2FpbnQtRXRpZW5uZSBkdSBSb3V2cmF5MQ8wDQYDVQQKEwZDUklBTk4xFjAUBgNVBAMTDWlkcC5jcmlhbm4uZnIxIDAeBgkqhkiG9w0BCQEWEXN1cHBvcnRAY3JpYW5uLmZyMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzni5wiKsxURabTVnu3R4788wRM6XHSdPWTmENIZtLV1ztvjmWMouih3hxmO7EMKfJi7DEzF/UpLSLSfcFcADH6ymIp3MHmwTbhbZUjRVn1CEPJl3x+5kbXhzxohPhZJ90/A6eOzVrxrOAKvENe+m/bSlTN8u78pHF0cNH5Hm0pq3guZgfiuyRPxrVThBXXRH5XKaFTUIzKnyijeRg6SUoQM4MCORKJki6pPuUycUPhyA58o8LRqwJaVQEVqnN7Z4wCPLTvQAjpkBwoIa0ZyQo8GNPGim66g0giazFGj2UflnE9cWB8s20ymQ6oJOcZ+Ql5hJ7pzWj/4ShWk9X5amBQIDAQABo4H3MIH0MB0GA1UdDgQWBBRJDrpqneDGVWyAZuORz6IBF88OtjCBxAYDVR0jBIG8MIG5gBRJDrpqneDGVWyAZuORz6IBF88OtqGBlaSBkjCBjzELMAkGA1UEBhMCRlIxEjAQBgNVBAgTCU5vcm1hbmRpZTEhMB8GA1UEBxMYU2FpbnQtRXRpZW5uZSBkdSBSb3V2cmF5MQ8wDQYDVQQKEwZDUklBTk4xFjAUBgNVBAMTDWlkcC5jcmlhbm4uZnIxIDAeBgkqhkiG9w0BCQEWEXN1cHBvcnRAY3JpYW5uLmZyggkA+8Q3+R6qiRMwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAER++8l3GpGYIqYlxX9G4AaqKsH8CbAcxAd8XgnrugjZbu9LGloKYn9JF0t+D08099Ps2q/KOQKyrhWorlusciKpvGVI9tDtapYmwb4lbo7FLNIeg8ZdcxqNqcgoqvC3pL+pOMLMgl5TGCv4140JkpHzhqy8miJhMTGJhKRA8vV1Y611MBlCGKYzujht8mCpQL+MqdB0n2WHJHPlqvv8CYifxAlVbb9rTBVkMxuYoWQZRQjXBOwQz8aI37uOdauiW2oulXScWMdjlRGzMsiGf8vjo8gUeWiBWl88FApzq06ylKUeAGoQKqFnhoaw3n31BnmfqQixCVJcmJmh7TlHsMw==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.criann.fr/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.criann.fr/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>CRIANN</md:GivenName> <md:EmailAddress>alain.bidaud@criann.fr</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
Au format à plat SimpleSAMLphp - à utiliser si vous avez une installation SimpleSAMLphp sur la partie adverse :
$metadata['https://idp.criann.fr/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://idp.criann.fr/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.criann.fr/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.criann.fr/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => array ( 0 => array ( 'emailAddress' => 'alain.bidaud@criann.fr', 'contactType' => 'technical', 'givenName' => 'CRIANN', ), ), );
Certificats
Télécharger les certificats X509 en tant que fichiers encodés PEM.