SAML 2.0 IdP Metadata
Here is the metadata that simpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sso.sothebysinstitute.com/simplesaml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.sothebysinstitute.com/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.sothebysinstitute.com/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:SurName>Administrator</md:SurName> <md:EmailAddress>admin@sothebysinstitute.com</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
In simpleSAMLphp flat file format - use this if you are using a simpleSAMLphp entity on the other side:
$metadata['https://sso.sothebysinstitute.com/simplesaml/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://sso.sothebysinstitute.com/simplesaml/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://sso.sothebysinstitute.com/simplesaml/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => 'https://sso.sothebysinstitute.com/simplesaml/saml2/idp/SingleLogoutService.php', 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', );
Certificates
Download the X509 certificates as PEM-encoded files.