SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://auth.oum.edu.ws/simplesaml/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://auth.oum.edu.ws"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.oum.edu.ws/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.oum.edu.ws/simplesaml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.oum.edu.ws/simplesaml/saml2/idp/SSOService.php"/> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.oum.edu.ws/simplesaml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>SAML</md:GivenName> <md:SurName>administrator</md:SurName> <md:EmailAddress>mailto:support@oum.edu.ws</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://auth.oum.edu.ws'] = [ 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://auth.oum.edu.ws', 'SingleSignOnService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST', 'Location' => 'https://auth.oum.edu.ws/simplesaml/saml2/idp/SSOService.php', ], [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://auth.oum.edu.ws/simplesaml/saml2/idp/SSOService.php', ], ], 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST', 'Location' => 'https://auth.oum.edu.ws/simplesaml/saml2/idp/SingleLogoutService.php', ], [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://auth.oum.edu.ws/simplesaml/saml2/idp/SingleLogoutService.php', ], ], 'certData' => 'MIIFPzCCA6egAwIBAgIUdvDI57cWCpoxmuDEMSeUXNgz6xwwDQYJKoZIhvcNAQELBQAwga4xCzAJBgNVBAYTAlVTMREwDwYDVQQIDAhOZXcgWW9yazERMA8GA1UEBwwITmV3IFlvcmsxJzAlBgNVBAoMHk9jZWFuaWEgVW5pdmVyc2l0eSBvZiBNZWRpY2luZTELMAkGA1UECwwCSVQxIDAeBgNVBAMMF2h0dHBzOi8vYXV0aC5vdW0uZWR1LndzMSEwHwYJKoZIhvcNAQkBFhJzdXBwb3J0QG91bS5lZHUud3MwHhcNMjAxMDI4MDQxMzI5WhcNMzAxMDI4MDQxMzI5WjCBrjELMAkGA1UEBhMCVVMxETAPBgNVBAgMCE5ldyBZb3JrMREwDwYDVQQHDAhOZXcgWW9yazEnMCUGA1UECgweT2NlYW5pYSBVbml2ZXJzaXR5IG9mIE1lZGljaW5lMQswCQYDVQQLDAJJVDEgMB4GA1UEAwwXaHR0cHM6Ly9hdXRoLm91bS5lZHUud3MxITAfBgkqhkiG9w0BCQEWEnN1cHBvcnRAb3VtLmVkdS53czCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAL8Evp7xnbr6kYlH7i7Jh9tlqaPNmxGA+2ATlpC7ZfXYLBqksy3XCFis4nrIbJmrjE2RYHfrENJKHfUV/S0ap0kWVoQV6QWxLGF7AwnaBj/8gNGDyYKKmOIxU2N+rQKBl6uPdo2Qy1KEWvgtt3VnEWABgDf+OXG3gNYOcPz7KcVlY7E5f4EsFWfPdDIvk5qhaj0oUxyoOOG1wRdi/7Yd+BStUte90l2SamBRqg3Ya4F2IkQrgaKaR0dSHdxlVfG6PrzMOV4gy/zD9oq27FXgkDjN8OA2JnztgoHwO7xW4UicyRlHWM20akCs9lg7wUGXOr3YInnSBmAPgv69O81vuKY4w+6ev+D721kpKyTXQ2vtUI/704Z3FWcTLmLMesxzNEtG7yYam+xpMcl66jm01qmSOkUmHzd4SZ52iiG1n+Bruguxlcftiz7XPpVNysWzPsPBYcBZ0zfMqCsgixc7EewFM1KiSXJhqGo73ZF9ssoYXPekE+LffKjr7pbdWQVESwIDAQABo1MwUTAdBgNVHQ4EFgQU8Rq01Fi6RtgArj3x2fJLy2errS4wHwYDVR0jBBgwFoAU8Rq01Fi6RtgArj3x2fJLy2errS4wDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAYEARsDqH0mCG78HL2JeQjsiAMZ6frDVSNxOjztTimeaySxhN0xDT9S1L8uU4UCapW6p20EuV8eKT/efB7d13X93BKc8H86HOdCxbpSa2k2rGbH5vPh/G2H/7pZEquIJJ7H/1Xstzlvku7oH1orZz9mNhmd/ZYoSLi5xZpFHc+wAc/d1sZ8Rzw7hg/oY1P6QcBh3JQLwN78JcpjxhtwI4IrFN244/O4xgSL6QMKY8W5aPu0TPWTAfcWrI5MWNG2CNoVvljv9dF02dDGinFgkCItHV7TWbF73yPkrF5CnNDmglFkoJPzZO9ywDyA4mNrCJ7wHNNuMQZ4tgLUiOSahmJjWoTHbbHPk+lZuLBlq4+I1a9/Bxh4l/HZxlut6b61pewA0gQt1k5egJHM3p6/KYUczY+Ucw/maRbXeh5Dxf42Fqd34OaJauYk9nJrt+AvsC4pakAX0rdYcOobbOOBGwkYsw5Muyp9dusGujr+i7tvngPkNA88YCASVUjDUd+NaXfm1', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => [ [ 'emailAddress' => 'support@oum.edu.ws', 'contactType' => 'technical', 'givenName' => 'SAML', 'surName' => 'administrator', ], ], ];
Certificates
Download the X509 certificates as PEM-encoded files.