English | Bokmål | Nynorsk | Sámegiella | Dansk | Deutsch | Svenska | Suomeksi | Español | Français | Italiano | Nederlands | Lëtzebuergesch | Čeština | Slovenščina | Lietuvių kalba | Hrvatski | Magyar | Język polski | Português | Português brasileiro | Türkçe | 日本語 | 简体中文 | 繁體中文 | русский язык | eesti keel | עִבְרִית | Bahasa Indonesia | Srpski | Latviešu | Românește | Euskara | ελληνικά | Afrikaans

SAML 2.0 IdP Metadata

Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.

You can get the metadata xml on a dedicated URL:

https://ldap.keywesttechnology.com/saml2/idp/metadata.php

Metadata

In SAML 2.0 Metadata XML format:

<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://ldap.keywesttechnology.com/saml2/idp/metadata.php/KeywestLDAP">
  <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ldap.keywesttechnology.com/saml2/idp/SingleLogoutService.php/KeywestLDAP"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ldap.keywesttechnology.com/saml2/idp/SSOService.php/KeywestLDAP"/>
  </md:IDPSSODescriptor>
  <md:ContactPerson contactType="technical">
    <md:GivenName>Administrator</md:GivenName>
    <md:EmailAddress>eng@keywesttechnology.com</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>

In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:

$metadata['https://ldap.keywesttechnology.com/saml2/idp/metadata.php/KeywestLDAP'] = array (
  'metadata-set' => 'saml20-idp-remote',
  'entityid' => 'https://ldap.keywesttechnology.com/saml2/idp/metadata.php/KeywestLDAP',
  'SingleSignOnService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://ldap.keywesttechnology.com/saml2/idp/SSOService.php/KeywestLDAP',
    ),
  ),
  'SingleLogoutService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://ldap.keywesttechnology.com/saml2/idp/SingleLogoutService.php/KeywestLDAP',
    ),
  ),
  'certData' => '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',
  'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
  'contacts' => 
  array (
    0 => 
    array (
      'emailAddress' => 'eng@keywesttechnology.com',
      'contactType' => 'technical',
      'givenName' => 'Administrator',
    ),
  ),
);

Certificates

Download the X509 certificates as PEM-encoded files.