SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://idp.hivolda.no/simplesaml/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.hivolda.no/simplesaml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.hivolda.no/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.hivolda.no/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Hans</md:GivenName> <md:SurName>Førde</md:SurName> <md:EmailAddress>hansf@hivolda.no</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://idp.hivolda.no/simplesaml/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://idp.hivolda.no/simplesaml/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.hivolda.no/simplesaml/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.hivolda.no/simplesaml/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => array ( 0 => array ( 'emailAddress' => 'hansf@hivolda.no', 'contactType' => 'technical', 'givenName' => 'Hans', 'surName' => 'Førde', ), ), );
Certificates
Download the X509 certificates as PEM-encoded files.