Afrikaans | Català | Čeština | Dansk | Deutsch | ελληνικά | English | Español | eesti keel | Euskara | Suomeksi | Français | עִבְרִית | Hrvatski | Magyar | Bahasa Indonesia | Italiano | 日本語 | Lëtzebuergesch | Lietuvių kalba | Latviešu | Nederlands | Nynorsk | Bokmål | Język polski | Português | Português brasileiro | Românește | русский язык | Sámegiella | Slovenščina | Srpski | Svenska | Türkçe | isiXhosa | 简体中文 | 繁體中文 | IsiZulu

SAML 2.0 IdP Metadata

Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.

You can get the metadata xml on a dedicated URL:

https://idp-social.dev.rctsaai.pt/simplesaml/saml2/idp/metadata.php

Metadata

In SAML 2.0 Metadata XML format:

<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp-social.dev.rctsaai.pt/simplesaml/saml2/idp/metadata.php">
  <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-social.dev.rctsaai.pt/simplesaml/saml2/idp/SingleLogoutService.php"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-social.dev.rctsaai.pt/simplesaml/saml2/idp/SSOService.php"/>
  </md:IDPSSODescriptor>
  <md:ContactPerson contactType="technical">
    <md:GivenName>RCTSaai</md:GivenName>
    <md:SurName>Team</md:SurName>
    <md:EmailAddress>mailto:suporte@rctsaai.pt</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>

In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:

$metadata['https://idp-social.dev.rctsaai.pt/simplesaml/saml2/idp/metadata.php'] = array (
  'metadata-set' => 'saml20-idp-remote',
  'entityid' => 'https://idp-social.dev.rctsaai.pt/simplesaml/saml2/idp/metadata.php',
  'SingleSignOnService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://idp-social.dev.rctsaai.pt/simplesaml/saml2/idp/SSOService.php',
    ),
  ),
  'SingleLogoutService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://idp-social.dev.rctsaai.pt/simplesaml/saml2/idp/SingleLogoutService.php',
    ),
  ),
  'certData' => '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',
  'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
  'contacts' => 
  array (
    0 => 
    array (
      'emailAddress' => 'suporte@rctsaai.pt',
      'contactType' => 'technical',
      'givenName' => 'RCTSaai',
      'surName' => 'Team',
    ),
  ),
);

Certificates

Download the X509 certificates as PEM-encoded files.