SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://sso-bnc.tmcc.edu/simplesaml/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://sso-bnc.tmcc.edu/simplesaml/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>MIICOzCCAaQCCQDHsedMsvc84DANBgkqhkiG9w0BAQUFADBiMQswCQYDVQQGEwJOVjEPMA0GA1UECBMGTmV2YWRhMQ0wCwYDVQQHEwRSZW5vMQ0wCwYDVQQKEwRUTUNDMQwwCgYDVQQLEwNJVE8xFjAUBgNVBAMTDXNhbWwudG1jYy5lZHUwHhcNMTEwNDEzMjEzNDM1WhcNMzgwODI4MjEzNDM1WjBiMQswCQYDVQQGEwJOVjEPMA0GA1UECBMGTmV2YWRhMQ0wCwYDVQQHEwRSZW5vMQ0wCwYDVQQKEwRUTUNDMQwwCgYDVQQLEwNJVE8xFjAUBgNVBAMTDXNhbWwudG1jYy5lZHUwgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJAoGBAL7tsG399n6T/4FB8UV5Eht3+5Xv0bYgUqpZmtacJLqyXkC4tJ3A2Qnom4IGKtP/G5PLg0Dtv1AXWfPur9pr97MGCrV7l/2GJTdxD2rPwpN5CRFeHPYJoGuv6pqJXWc5vaEKlUG1JaOwhwywp938/bdfDPbyZUwZhJLwM0XvLud1AgMBAAEwDQYJKoZIhvcNAQEFBQADgYEAgjVo/DVosqyuRUbx2zRwvmhUFCgUo4uKC0estmF7fQeyAAwSF73oAzWIAxJQ3OjVtU37Z9ralrRJYp2UPLkQdyACRLyijB2yapMKIoCJyNRrj8trbgW3edyFn+C0P8HdlzqG6DSWkB2VHc8hLPwGJJaydVWTYuXws24J92AK8X8=</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso-bnc.tmcc.edu/simplesaml/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso-bnc.tmcc.edu/simplesaml/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:ContactPerson contactType="technical">
<md:GivenName>IT Customer Service</md:GivenName>
<md:EmailAddress>mailto:itcustomerservice@tmcc.edu</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://sso-bnc.tmcc.edu/simplesaml/saml2/idp/metadata.php'] = [
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://sso-bnc.tmcc.edu/simplesaml/saml2/idp/metadata.php',
'SingleSignOnService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://sso-bnc.tmcc.edu/simplesaml/saml2/idp/SSOService.php',
],
],
'SingleLogoutService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://sso-bnc.tmcc.edu/simplesaml/saml2/idp/SingleLogoutService.php',
],
],
'certData' => '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',
'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
'contacts' => [
[
'emailAddress' => 'itcustomerservice@tmcc.edu',
'contactType' => 'technical',
'givenName' => 'IT Customer Service',
],
],
];
Certificates
Download the X509 certificates as PEM-encoded files.