SAML 2.0 IdP Metadata

Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.

You can get the metadata xml on a dedicated URL:

https://gmail.pgcps.org:443/simplesaml/saml2/idp/metadata.php

Metadata

In SAML 2.0 Metadata XML format:

<?xml version="1.0"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://gmail.pgcps.org:443/simplesaml/saml2/idp/metadata.php">
  <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gmail.pgcps.org:443/simplesaml/saml2/idp/SingleLogoutService.php"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gmail.pgcps.org:443/simplesaml/saml2/idp/SSOService.php"/>
  </md:IDPSSODescriptor>
  <md:ContactPerson contactType="technical">
    <md:GivenName>brian</md:GivenName>
    <md:EmailAddress>mailto:bgovoni@pgcps.org</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>

In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:

$metadata['https://gmail.pgcps.org:443/simplesaml/saml2/idp/metadata.php'] = [
    'metadata-set' => 'saml20-idp-remote',
    'entityid' => 'https://gmail.pgcps.org:443/simplesaml/saml2/idp/metadata.php',
    'SingleSignOnService' => [
        [
            'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
            'Location' => 'https://gmail.pgcps.org:443/simplesaml/saml2/idp/SSOService.php',
        ],
    ],
    'SingleLogoutService' => [
        [
            'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
            'Location' => 'https://gmail.pgcps.org:443/simplesaml/saml2/idp/SingleLogoutService.php',
        ],
    ],
    'certData' => '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',
    'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
    'contacts' => [
        [
            'emailAddress' => 'bgovoni@pgcps.org',
            'contactType' => 'technical',
            'givenName' => 'brian',
        ],
    ],
];

Certificates

Download the X509 certificates as PEM-encoded files.