SAML 2.0 IdP Metadata

Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.

You can get the metadata xml on a dedicated URL:

https://samlproxy.byui.edu/simplesaml/saml2/idp/metadata.php

Metadata

In SAML 2.0 Metadata XML format:

<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://samlproxy.byui.edu/simplesaml/saml2/idp/metadata.php">
  <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://samlproxy.byui.edu/simplesaml/saml2/idp/SingleLogoutService.php"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.byui.edu/simplesaml/saml2/idp/SSOService.php"/>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://samlproxy.byui.edu/simplesaml/saml2/idp/SSOService.php"/>
  </md:IDPSSODescriptor>
  <md:ContactPerson contactType="technical">
    <md:GivenName>Administrator</md:GivenName>
    <md:EmailAddress>mailto:mgrady@unicon.net</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>

In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:

$metadata['https://samlproxy.byui.edu/simplesaml/saml2/idp/metadata.php'] = array (
  'metadata-set' => 'saml20-idp-remote',
  'entityid' => 'https://samlproxy.byui.edu/simplesaml/saml2/idp/metadata.php',
  'SingleSignOnService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST',
      'Location' => 'https://samlproxy.byui.edu/simplesaml/saml2/idp/SSOService.php',
    ),
    1 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://samlproxy.byui.edu/simplesaml/saml2/idp/SSOService.php',
    ),
  ),
  'SingleLogoutService' => 
  array (
    0 => 
    array (
      'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
      'Location' => 'https://samlproxy.byui.edu/simplesaml/saml2/idp/SingleLogoutService.php',
    ),
  ),
  'certData' => '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',
  'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
  'contacts' => 
  array (
    0 => 
    array (
      'emailAddress' => 'mgrady@unicon.net',
      'contactType' => 'technical',
      'givenName' => 'Administrator',
    ),
  ),
);

Certificates

Download the X509 certificates as PEM-encoded files.