SAML 2.0 SP Metadata
Aqui está a metadata que o SimpleSAMLphp gerou para você. Você pode enviar este documento metadata para parceiros confiáveis para a configuração de uma federação confiável.
Você pode obter as metadatas xml em uma URL dedicada:
https://topdesk.rnp.br/simplesaml/module.php/saml/sp/metadata.php/default-sp
Metadata
Em formato SAML 2.0 Metadata XML
<?xml version="1.0"?> <md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://topdesk.rnp.br/sp/simplesamlphp"> <md:SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol"> <md:KeyDescriptor use="signing"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>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</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:KeyDescriptor use="encryption"> <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#"> <ds:X509Data> <ds:X509Certificate>MIIECTCCAvGgAwIBAgIUX56Ouk1fAntTOK32yBfiUzLfmNQwDQYJKoZIhvcNAQELBQAwgZMxCzAJBgNVBAYTAkJSMRcwFQYDVQQIDA5SaW8gZGUgSmFuZWlybzEXMBUGA1UEBwwOUmlvIGRlIEphbmVpcm8xKzApBgNVBAoMIlJlZGUgTmFjaW9uYWwgZGUgRW5zaW5vIGUgUGVzcXVpc2ExDDAKBgNVBAsMA1JOUDEXMBUGA1UEAwwOdG9wZGVzay5ybnAuYnIwHhcNMjEwMzExMTQzMDUyWhcNMzEwMzExMTQzMDUyWjCBkzELMAkGA1UEBhMCQlIxFzAVBgNVBAgMDlJpbyBkZSBKYW5laXJvMRcwFQYDVQQHDA5SaW8gZGUgSmFuZWlybzErMCkGA1UECgwiUmVkZSBOYWNpb25hbCBkZSBFbnNpbm8gZSBQZXNxdWlzYTEMMAoGA1UECwwDUk5QMRcwFQYDVQQDDA50b3BkZXNrLnJucC5icjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMBJ8Uz6WSrQGMyscETfpP8+2vo5q8fQefFaLcrYwebY7hfWglJVshxTQimtRI4Tx3Rmot3znDZKW74hIPlHkUFAgpGsbdB4lRQqWQvzjpYBXHxcNqOvenp5r9jweV2uJBhTrpukGjs+apFDGkSVLwQ5FPIktPyFcwH83v0ZKO8lo69aaAcXupWgQnzQG2zr2Yg0X0xCceTu4mh1i1/5fea9Ji87ON3vcj11cnpLBtYLkxo88MpFW1mPmF5RC7hpBwGpV/ErcmtfUG9web8a7GbdrHTvYPk3VDosxeCKrGlKmykh1gT9JHqHbixJxOZxaqSBy8yQloJ+e2r2igN5RS8CAwEAAaNTMFEwHQYDVR0OBBYEFIegoCDAA5FX27yJ5K2GSeFOuTMpMB8GA1UdIwQYMBaAFIegoCDAA5FX27yJ5K2GSeFOuTMpMA8GA1UdEwEB/wQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAGSO0uCYQdHIorkkRfNXVIIVe5/PK1QcMb/6+vimh6ZsfXI+u0eEtqBg/WS7HH5JO5luA9/e3lKGBb7+hCOo6Kdlf7F3KYkZXDO3NfTrodeuhBpAGUNiq3s/uSyncVURreoNTGu/N4VuZfMXAl03oocC3+O41lLkfW7poSkoJqHnM+U0hJDGgpdSvRSypU8cJFE7chVNNRNzR0sDQkHZtFz0KYXw/vIuLJeon2QemigNu3i3XYB+6LBdtCWkbVwwVGjci3V7iH0gyJn3zQT3rxzb/3rclIgjcUMOE80koNmT6T/I1kedpmgZjH5HSGRMVgIeeUtQnMPVbOSTDFamjAE=</ds:X509Certificate> </ds:X509Data> </ds:KeyInfo> </md:KeyDescriptor> <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="0"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="1"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/> <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="3"/> </md:SPSSODescriptor> <md:ContactPerson contactType="technical"> <md:GivenName>Alexandre dos Santos Matos</md:GivenName> <md:EmailAddress>mailto:alexandre.matos@terceiro.rnp.br</md:EmailAddress> </md:ContactPerson> </md:EntityDescriptor>
Em formato de arquivo plano SimpleSAMLphp - use isso se você estiver usando uma entidade SimpleSAMLphp do outro lado:
$metadata['https://topdesk.rnp.br/sp/simplesamlphp'] = [ 'SingleLogoutService' => [ [ 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect', 'Location' => 'https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp', ], ], 'AssertionConsumerService' => [ [ 'index' => 0, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST', 'Location' => 'https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp', ], [ 'index' => 1, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:browser-post', 'Location' => 'https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp', ], [ 'index' => 2, 'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact', 'Location' => 'https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp', ], [ 'index' => 3, 'Binding' => 'urn:oasis:names:tc:SAML:1.0:profiles:artifact-01', 'Location' => 'https://topdesk.rnp.br/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact', ], ], 'contacts' => [ [ 'emailAddress' => 'alexandre.matos@terceiro.rnp.br', 'contactType' => 'technical', 'givenName' => 'Alexandre dos Santos Matos', ], ], 'certData' => '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', ];