SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://ldap.keywesttechnology.com/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://ldap.keywesttechnology.com/saml2/idp/metadata.php/KeywestLDAP">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ldap.keywesttechnology.com/saml2/idp/SingleLogoutService.php/KeywestLDAP"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ldap.keywesttechnology.com/saml2/idp/SSOService.php/KeywestLDAP"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>Administrator</md:GivenName>
<md:EmailAddress>eng@keywesttechnology.com</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://ldap.keywesttechnology.com/saml2/idp/metadata.php/KeywestLDAP'] = array (
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://ldap.keywesttechnology.com/saml2/idp/metadata.php/KeywestLDAP',
'SingleSignOnService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://ldap.keywesttechnology.com/saml2/idp/SSOService.php/KeywestLDAP',
),
),
'SingleLogoutService' =>
array (
0 =>
array (
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://ldap.keywesttechnology.com/saml2/idp/SingleLogoutService.php/KeywestLDAP',
),
),
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' =>
array (
0 =>
array (
'emailAddress' => 'eng@keywesttechnology.com',
'contactType' => 'technical',
'givenName' => 'Administrator',
),
),
);
Certificates
Download the X509 certificates as PEM-encoded files.