SAML 2.0 SP 元信息
这里是SimpleSAMLphp为你生成的元信息,你应该发送这个元信息文档给你的信任的合作伙伴以建立信任的联盟
你可以在 获取元信息XML
https://sso-thornico.hr-on.com/module.php/saml/sp/metadata.php/thornico-sp
元信息
在SAML 2.0 XML 元信息格式中:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sso-thornico.hr-on.com/module.php/saml/sp/metadata.php/thornico-sp"> <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso-thornico.hr-on.com/module.php/saml/sp/saml2-logout.php/thornico-sp"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso-thornico.hr-on.com/module.php/saml/sp/saml2-acs.php/thornico-sp" index="0"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sso-thornico.hr-on.com/module.php/saml/sp/saml1-acs.php/thornico-sp" index="1"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso-thornico.hr-on.com/module.php/saml/sp/saml2-acs.php/thornico-sp" index="2"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sso-thornico.hr-on.com/module.php/saml/sp/saml1-acs.php/thornico-sp/artifact" index="3"/> </md:SPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Administrator</md:GivenName> <md:EmailAddress>mailto:sso@hr-on.com</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
如果你想在其他网站使用的SimpleSAMLphp,那么你应该使用SimpleSAMLphp扁平的文件格式
$metadata['https://sso-thornico.hr-on.com/module.php/saml/sp/metadata.php/thornico-sp'] = [ 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://sso-thornico.hr-on.com/module.php/saml/sp/saml2-logout.php/thornico-sp', ], ], 'AssertionConsumerService' => [ [ 'index' => 0, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST', 'Location' => 'https://sso-thornico.hr-on.com/module.php/saml/sp/saml2-acs.php/thornico-sp', ], [ 'index' => 1, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:browser-post', 'Location' => 'https://sso-thornico.hr-on.com/module.php/saml/sp/saml1-acs.php/thornico-sp', ], [ 'index' => 2, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact', 'Location' => 'https://sso-thornico.hr-on.com/module.php/saml/sp/saml2-acs.php/thornico-sp', ], [ 'index' => 3, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:artifact-01', 'Location' => 'https://sso-thornico.hr-on.com/module.php/saml/sp/saml1-acs.php/thornico-sp/artifact', ], ], 'contacts' => [ [ 'emailAddress' => 'sso@hr-on.com', 'contactType' => 'technical', 'givenName' => 'Administrator', ], ], 'certData' => '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', ];