SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://turnov-eduid.koha-system.cz/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://turnov-eduid.koha-system.cz/saml2/idp/metadata.php"> <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol"> <md:Extensions> <shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">knihovna.turnov.cz</shibmd:Scope> <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui"> <mdui:DisplayName xml:lang="en">Municipal library Antonin Marek of Turnov</mdui:DisplayName> <mdui:DisplayName xml:lang="cs">Městská knihovna Antonína Marka Turnov</mdui:DisplayName> <mdui:Description xml:lang="en">Identity Provider for Municipal library Antonin Marek of Turnov</mdui:Description> <mdui:Description xml:lang="cs">Identity Provider pro Městskou knihovnu Antonína Marka Turnov</mdui:Description> <mdui:InformationURL xml:lang="en">https://knihovna.turnov.cz/</mdui:InformationURL> <mdui:InformationURL xml:lang="cs">https://knihovna.turnov.cz/</mdui:InformationURL> <mdui:Logo width="110" height="55">https://turnov-katalog.koha-system.cz/vufind/themes/ereading/images/turnov.png</mdui:Logo> </mdui:UIInfo> </md:Extensions> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php"/> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php"/> <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat> <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://turnov-eduid.koha-system.cz/saml2/idp/SSOService.php"/> </md:IDPSSODescriptor> <md:Organization> <md:OrganizationName xml:lang="en">Municipal library Antonin Marek of Turnov</md:OrganizationName> <md:OrganizationName xml:lang="cs">Městská knihovna Antonína Marka Turnov</md:OrganizationName> <md:OrganizationDisplayName xml:lang="en">Municipal library Antonin Marek of Turnov</md:OrganizationDisplayName> <md:OrganizationDisplayName xml:lang="cs">Městská knihovna Antonína Marka Turnov</md:OrganizationDisplayName> <md:OrganizationURL xml:lang="en">https://knihovna.turnov.cz/</md:OrganizationURL> <md:OrganizationURL xml:lang="cs">https://knihovna.turnov.cz/</md:OrganizationURL> </md:Organization> <md:ContactPerson contactType="technical"> <md:GivenName>Jan</md:GivenName> <md:SurName>Kolátor</md:SurName> <md:EmailAddress>mailto:jan.kolator@teamlibrary.cz</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://turnov-eduid.koha-system.cz/saml2/idp/metadata.php'] = [ 'metadata-set' => 'saml20-idp-remote', 'entityid' => 'https://turnov-eduid.koha-system.cz/saml2/idp/metadata.php', 'SingleSignOnService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://turnov-eduid.koha-system.cz/saml2/idp/SSOService.php', ], ], 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php', ], [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST', 'Location' => 'https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php', ], ], 'certData' => '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', 'NameIDFormat' => [ 'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent', ], 'OrganizationName' => [ 'en' => 'Municipal library Antonin Marek of Turnov', 'cs' => 'Městská knihovna Antonína Marka Turnov', ], 'OrganizationDisplayName' => [ 'en' => 'Municipal library Antonin Marek of Turnov', 'cs' => 'Městská knihovna Antonína Marka Turnov', ], 'OrganizationURL' => [ 'en' => 'https://knihovna.turnov.cz/', 'cs' => 'https://knihovna.turnov.cz/', ], 'scope' => [ 'knihovna.turnov.cz', ], 'UIInfo' => [ 'DisplayName' => [ 'en' => 'Municipal library Antonin Marek of Turnov', 'cs' => 'Městská knihovna Antonína Marka Turnov', ], 'Description' => [ 'en' => 'Identity Provider for Municipal library Antonin Marek of Turnov', 'cs' => 'Identity Provider pro Městskou knihovnu Antonína Marka Turnov', ], 'Logo' => [ [ 'url' => 'https://turnov-katalog.koha-system.cz/vufind/themes/ereading/images/turnov.png', 'height' => 55, 'width' => 110, ], ], 'InformationURL' => [ 'en' => 'https://knihovna.turnov.cz/', 'cs' => 'https://knihovna.turnov.cz/', ], ], 'contacts' => [ [ 'emailAddress' => 'jan.kolator@teamlibrary.cz', 'contactType' => 'technical', 'givenName' => 'Jan', 'surName' => 'Kolátor', ], ], ];
Certificates
Download the X509 certificates as PEM-encoded files.