SAML 2.0 IdP Metadata
Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.
You can get the metadata xml on a dedicated URL:
https://turnov-eduid.koha-system.cz/saml2/idp/metadata.php
Metadata
In SAML 2.0 Metadata XML format:
<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://turnov-eduid.koha-system.cz/saml2/idp/metadata.php">
<md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
<md:Extensions>
<shibmd:Scope xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" regexp="false">knihovna.turnov.cz</shibmd:Scope>
<mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
<mdui:DisplayName xml:lang="en">Municipal library Antonin Marek of Turnov</mdui:DisplayName>
<mdui:DisplayName xml:lang="cs">Městská knihovna Antonína Marka Turnov</mdui:DisplayName>
<mdui:Description xml:lang="en">Identity Provider for Municipal library Antonin Marek of Turnov</mdui:Description>
<mdui:Description xml:lang="cs">Identity Provider pro Městskou knihovnu Antonína Marka Turnov</mdui:Description>
<mdui:InformationURL xml:lang="en">https://knihovna.turnov.cz/</mdui:InformationURL>
<mdui:InformationURL xml:lang="cs">https://knihovna.turnov.cz/</mdui:InformationURL>
<mdui:Logo width="110" height="55">https://turnov-katalog.koha-system.cz/vufind/themes/ereading/images/turnov.png</mdui:Logo>
</mdui:UIInfo>
</md:Extensions>
<md:KeyDescriptor use="signing">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:KeyDescriptor use="encryption">
<ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>MIIEczCCAtugAwIBAgIUbbkgekETRs0nlnXT5DsU2p/bApMwDQYJKoZIhvcNAQELBQAwSTELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ8wDQYDVQQHDAZQcmFndWUxEDAOBgNVBAoMB3RlYW1saWIwHhcNMjIxMTEwMjIxMzA0WhcNMzIxMTA5MjIxMzA0WjBJMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDzANBgNVBAcMBlByYWd1ZTEQMA4GA1UECgwHdGVhbWxpYjCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKWAic6mTN4uLW6Ib5gU+7aOe7XEt5UAuZSDiIhurG4p+SEq5BrTQn/I15hGE+YAdKi5klnzjPezCsBWCPv6msIOPkr/FT5DW31ZzfdY+m/T23UoroIUr3z/UrCGQDKYKIXWQRzlnBzkvkp4GmM7PAzT/IyiCSsn0BgwlNlRbk0X/oWhbwS0hkJducaaDtvpu43SMaB/7StFyp2AvRBO6Vww7TO9hYVg682u5NANSeP0ULr73n4TX7M1ppHxzzXYKLomeY91oJDf3cz5r1WRYQL4ApdzQj7z94KLA/ac7Nr0qlo6pvsZkLumow+nnk+J/iiYMXanZdsIkGFhdjw7J2+8rKZl1+A1qHHGgUjsyIC9T92m4GQbCId0PKGQfq7rtqRHVxHzroK7l0RWx6iF/0k1234zbgq26OipslCD/eS7GISL/7TRCTepPZHKl9ERFTgdCfomTNW1xdqWWar1RiwjPFJ4TeU3D1qSv74GxO/7gjrutHPLl5XxMq0SMDRtJQIDAQABo1MwUTAdBgNVHQ4EFgQUgVlmi1lUjbjVNa6Rr3TFswsmhXowHwYDVR0jBBgwFoAUgVlmi1lUjbjVNa6Rr3TFswsmhXowDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAYEAbP+ciniWC1ZZ2sLSzgxAIXX3zvs0yYgcJHv5HxHUBlCZuBgE9ranTWqEJdGLtYuJql3NEBoAQLLe0bYF5j9iFqrjP3lZ7IDTZNpfjYgv7tDDDpzwj45y85zkG+basMFtr7EzarwMFLXw2pZcgBQVyaYtm4U87MpWOM1FU+Ry1Fn5NrVc5J/ZxsZfuqj/QMAp6lWz1d0yjeO3ZXJjcVULLM9szWdbYUmsnwAmdmcWEM443my9tuPrXvT9hSZHBeIH6NChmAY9rpvE9jCORjERN8O13apOF7Uhz38WMi1w4g0aaRlfX1beBJcMeVTYEXSJywVdHZRaPj7d5SKpGSOIRVcO8zL15BTnbGPtHNffIMx5gFrupZGZ8ao1hhYUpmhgrEqc6BVrAIFUPYkQduRvHt+0DpXWi1B9gVymAfaQ7gM8zJlxLPwCMplilSquLcjXvHL3yjgIdKyjX7dfR47odwlJthzFf9VURVrn99MYLNCRhPJCFdLBuqMbSFrvBxRN</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</md:KeyDescriptor>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php"/>
<md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php"/>
<md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</md:NameIDFormat>
<md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://turnov-eduid.koha-system.cz/saml2/idp/SSOService.php"/>
</md:IDPSSODescriptor>
<md:Organization>
<md:OrganizationName xml:lang="en">Municipal library Antonin Marek of Turnov</md:OrganizationName>
<md:OrganizationName xml:lang="cs">Městská knihovna Antonína Marka Turnov</md:OrganizationName>
<md:OrganizationDisplayName xml:lang="en">Municipal library Antonin Marek of Turnov</md:OrganizationDisplayName>
<md:OrganizationDisplayName xml:lang="cs">Městská knihovna Antonína Marka Turnov</md:OrganizationDisplayName>
<md:OrganizationURL xml:lang="en">https://knihovna.turnov.cz/</md:OrganizationURL>
<md:OrganizationURL xml:lang="cs">https://knihovna.turnov.cz/</md:OrganizationURL>
</md:Organization>
<md:ContactPerson contactType="technical">
<md:GivenName>Jan</md:GivenName>
<md:SurName>Kolátor</md:SurName>
<md:EmailAddress>mailto:jan.kolator@teamlibrary.cz</md:EmailAddress>
</md:ContactPerson>
</md:EntityDescriptor>
In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:
$metadata['https://turnov-eduid.koha-system.cz/saml2/idp/metadata.php'] = [
'metadata-set' => 'saml20-idp-remote',
'entityid' => 'https://turnov-eduid.koha-system.cz/saml2/idp/metadata.php',
'SingleSignOnService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://turnov-eduid.koha-system.cz/saml2/idp/SSOService.php',
],
],
'SingleLogoutService' => [
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
'Location' => 'https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php',
],
[
'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST',
'Location' => 'https://turnov-eduid.koha-system.cz/saml2/idp/SingleLogoutService.php',
],
],
'certData' => 'MIIEczCCAtugAwIBAgIUbbkgekETRs0nlnXT5DsU2p/bApMwDQYJKoZIhvcNAQELBQAwSTELMAkGA1UEBhMCQ1oxFzAVBgNVBAgMDkN6ZWNoIFJlcHVibGljMQ8wDQYDVQQHDAZQcmFndWUxEDAOBgNVBAoMB3RlYW1saWIwHhcNMjIxMTEwMjIxMzA0WhcNMzIxMTA5MjIxMzA0WjBJMQswCQYDVQQGEwJDWjEXMBUGA1UECAwOQ3plY2ggUmVwdWJsaWMxDzANBgNVBAcMBlByYWd1ZTEQMA4GA1UECgwHdGVhbWxpYjCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKWAic6mTN4uLW6Ib5gU+7aOe7XEt5UAuZSDiIhurG4p+SEq5BrTQn/I15hGE+YAdKi5klnzjPezCsBWCPv6msIOPkr/FT5DW31ZzfdY+m/T23UoroIUr3z/UrCGQDKYKIXWQRzlnBzkvkp4GmM7PAzT/IyiCSsn0BgwlNlRbk0X/oWhbwS0hkJducaaDtvpu43SMaB/7StFyp2AvRBO6Vww7TO9hYVg682u5NANSeP0ULr73n4TX7M1ppHxzzXYKLomeY91oJDf3cz5r1WRYQL4ApdzQj7z94KLA/ac7Nr0qlo6pvsZkLumow+nnk+J/iiYMXanZdsIkGFhdjw7J2+8rKZl1+A1qHHGgUjsyIC9T92m4GQbCId0PKGQfq7rtqRHVxHzroK7l0RWx6iF/0k1234zbgq26OipslCD/eS7GISL/7TRCTepPZHKl9ERFTgdCfomTNW1xdqWWar1RiwjPFJ4TeU3D1qSv74GxO/7gjrutHPLl5XxMq0SMDRtJQIDAQABo1MwUTAdBgNVHQ4EFgQUgVlmi1lUjbjVNa6Rr3TFswsmhXowHwYDVR0jBBgwFoAUgVlmi1lUjbjVNa6Rr3TFswsmhXowDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAYEAbP+ciniWC1ZZ2sLSzgxAIXX3zvs0yYgcJHv5HxHUBlCZuBgE9ranTWqEJdGLtYuJql3NEBoAQLLe0bYF5j9iFqrjP3lZ7IDTZNpfjYgv7tDDDpzwj45y85zkG+basMFtr7EzarwMFLXw2pZcgBQVyaYtm4U87MpWOM1FU+Ry1Fn5NrVc5J/ZxsZfuqj/QMAp6lWz1d0yjeO3ZXJjcVULLM9szWdbYUmsnwAmdmcWEM443my9tuPrXvT9hSZHBeIH6NChmAY9rpvE9jCORjERN8O13apOF7Uhz38WMi1w4g0aaRlfX1beBJcMeVTYEXSJywVdHZRaPj7d5SKpGSOIRVcO8zL15BTnbGPtHNffIMx5gFrupZGZ8ao1hhYUpmhgrEqc6BVrAIFUPYkQduRvHt+0DpXWi1B9gVymAfaQ7gM8zJlxLPwCMplilSquLcjXvHL3yjgIdKyjX7dfR47odwlJthzFf9VURVrn99MYLNCRhPJCFdLBuqMbSFrvBxRN',
'NameIDFormat' => [
'urn:oasis:names:tc:SAML:2.0:nameid-format:persistent',
],
'OrganizationName' => [
'en' => 'Municipal library Antonin Marek of Turnov',
'cs' => 'Městská knihovna Antonína Marka Turnov',
],
'OrganizationDisplayName' => [
'en' => 'Municipal library Antonin Marek of Turnov',
'cs' => 'Městská knihovna Antonína Marka Turnov',
],
'OrganizationURL' => [
'en' => 'https://knihovna.turnov.cz/',
'cs' => 'https://knihovna.turnov.cz/',
],
'scope' => [
'knihovna.turnov.cz',
],
'UIInfo' => [
'DisplayName' => [
'en' => 'Municipal library Antonin Marek of Turnov',
'cs' => 'Městská knihovna Antonína Marka Turnov',
],
'Description' => [
'en' => 'Identity Provider for Municipal library Antonin Marek of Turnov',
'cs' => 'Identity Provider pro Městskou knihovnu Antonína Marka Turnov',
],
'Logo' => [
[
'url' => 'https://turnov-katalog.koha-system.cz/vufind/themes/ereading/images/turnov.png',
'height' => 55,
'width' => 110,
],
],
'InformationURL' => [
'en' => 'https://knihovna.turnov.cz/',
'cs' => 'https://knihovna.turnov.cz/',
],
],
'contacts' => [
[
'emailAddress' => 'jan.kolator@teamlibrary.cz',
'contactType' => 'technical',
'givenName' => 'Jan',
'surName' => 'Kolátor',
],
],
];
Certificates
Download the X509 certificates as PEM-encoded files.