SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://idp.bitlair.nl/saml/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.bitlair.nl/saml/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIGtzCCBJ+gAwIBAgIJALnF1N+/XxSNMA0GCSqGSIb3DQEBBQUAMIGYMQswCQYDVQQGEwJOTDEQMA4GA1UECBMHVXRyZWNodDETMBEGA1UEBxMKQW1lcnNmb29ydDEaMBgGA1UEChMRU3RpY2h0aW5nIEJpdGxhaXIxJTAjBgNVBAMTHEJpdGxhaXIgU0FNTCBJZFAgY2VydGlmaWNhdGUxHzAdBgkqhkiG9w0BCQEWEHdpbGNvQGJpdGxhaXIubmwwHhcNMTIxMjIzMjE1ODEzWhcNMjIxMjIxMjE1ODEzWjCBmDELMAkGA1UEBhMCTkwxEDAOBgNVBAgTB1V0cmVjaHQxEzARBgNVBAcTCkFtZXJzZm9vcnQxGjAYBgNVBAoTEVN0aWNodGluZyBCaXRsYWlyMSUwIwYDVQQDExxCaXRsYWlyIFNBTUwgSWRQIGNlcnRpZmljYXRlMR8wHQYJKoZIhvcNAQkBFhB3aWxjb0BiaXRsYWlyLm5sMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA43brpgf4ybRQ2U2tiMs/fbL3XgdsgxSo+mUqk4prpPKvmKqOt7556neAYmyZc4x8xWtkdTOPW8r2Ii317DgPcO1UspNsYFIuG2dLOG5p2oI7/cnAauSYGgMhscQAGcPhpF1hJ+YQLpAjwKWak5ZzzWCVK7xRWqIaHghxbMkoPLw1E8ZaFZvoqPwMN5R/7ew77NqIjURMcjPUFb5gFrSmSsCtD6kkBY3AzWpeUheqj/Vlh7IZOuQgCjC+i1JIEj5Iar3TWV2hrw1THUkxl9bDm2xAR0F+7li0HOQQzAYVJqVnlZA5lqmprkK3WjTaOqyLnnAnKiXcyvxR1VnOaj3nZke08jBR54qYQBuGYxjBaycgI1IbKfnG9TFk+QvbC6ZaC4OpnQkrc5GXIRjV8/yhvRVYw0mBMHZr2kIPlcALz1IT0j13UzW6e/7kyPIKVnWFpmGKOgSBgOp8fWLYgQ0YSsGs8MVUbm5qU99/Om/9DXNLE2O3H43B8cVDhnQ7i0SjcRDDML8qh8DUuIaaAxuZGUMhkb7JzZ6divMmVexkBCMKHjNSVF89zT6/CqD/n74l/g1GTOxa+6VMp/2myp6rGFBZFB2Wtys/NvRjx1tDXBGHy5rMCgkQb1ES0l1hA/hGG0050x2EbEy/b1tN+uQlscqH6g+71KfCY17X3Jed9wkCAwEAAaOCAQAwgf0wHQYDVR0OBBYEFKLI5zN33tuKeNvJVxu8z/H64zVSMIHNBgNVHSMEgcUwgcKAFKLI5zN33tuKeNvJVxu8z/H64zVSoYGepIGbMIGYMQswCQYDVQQGEwJOTDEQMA4GA1UECBMHVXRyZWNodDETMBEGA1UEBxMKQW1lcnNmb29ydDEaMBgGA1UEChMRU3RpY2h0aW5nIEJpdGxhaXIxJTAjBgNVBAMTHEJpdGxhaXIgU0FNTCBJZFAgY2VydGlmaWNhdGUxHzAdBgkqhkiG9w0BCQEWEHdpbGNvQGJpdGxhaXIubmyCCQC5xdTfv18UjTAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4ICAQAw1g9MM2dJBGzdfQOBETTskeU34JtH+MJuTpl9l/ylRii6+XBSdXdcprMZ36h4ROJ62UBz9JPT4EeCXNF8JRiLVI2CiAvy6ixY5srWtDeJM2Nevre6yX9K8XTnrDTOC9zhACIOzEyTdT8t89ndY04EPsi23mu3j+gMYgrTN+jNXN8eHE0UA6hQsP4FW6ISXBBlY6H7KbbN0v03752/qKeu/gJKGCFpda2zdNNhbPkNO7EPrdoEjYW4pGQDceKB20BuQqvpuD3hvOnH/5iD5fN7UuIMiBygmH23yvKcriv8TmgxzwEtdBVUaqPtmJSp7ZmRyYB64Q/yKs8ZuUDx6GUZr0Qze8vBVvaLzc5z94b2ct2JthMUu6w6I9avAjfPhzxQ4P8e+RZN5laJp5HIea4uhObvq04YnxN/NmbeI9yuq2Beb7+Frsp9ifuDFhyLZRvXUZnV4piw3ByWUHf5NRJnGMWIAsY/dihSTBWzwVunyGxynuG2H2H5NPnKOj9EKzhuTvjJh3apidqyfLdbLC6RZEOenLds1B6uPm4w7TszbTuh6sgnGPZoa1wuCl5vBUH1q/egk8sMA3iilNuE4IbKN30UOMuZyoMFcbYzIRgHLDWcEsZma4XIT80Y4hR0muTzz/W5nbf/AJAiNAABwyktup8+C4PoyLmVDl9aRS1grQ==</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.bitlair.nl/saml/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.bitlair.nl/saml/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Wilco Baan Hofman</md:GivenName> <md:EmailAddress>wilco@bitlair.nl</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://idp.bitlair.nl/saml/saml2/idp/metadata.php'] = array ( 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://idp.bitlair.nl/saml/saml2/idp/metadata.php', 'SingleSignOnService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.bitlair.nl/saml/saml2/idp/SSOService.php', ), ), 'SingleLogoutService' => array ( 0 => array ( 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://idp.bitlair.nl/saml/saml2/idp/SingleLogoutService.php', ), ), 'certData' => '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', 'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient', 'contacts' => array ( 0 => array ( 'emailAddress' => 'wilco@bitlair.nl', 'contactType' => 'technical', 'givenName' => 'Wilco Baan Hofman', ), ), );
Certificates
Download the X509 certificates as PEM-encoded files.