English | 日本語

SAML 2.0 IdP Metadata

Here is the metadata that SimpleSAMLphp has generated for you. You may send this metadata document to trusted partners to setup a trusted federation.

You can get the metadata xml on a dedicated URL:

https://idp.lifeplan-rakuten-sec.jp/saml2/idp/metadata.php

Metadata

In SAML 2.0 Metadata XML format:

<?xml version="1.0" encoding="UTF-8"?>
<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" entityID="https://idp.lifeplan-rakuten-sec.jp/saml2/idp/metadata.php">
  <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
    <md:KeyDescriptor use="signing">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:KeyDescriptor use="encryption">
      <ds:KeyInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
        <ds:X509Data>
          <ds:X509Certificate>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</ds:X509Certificate>
        </ds:X509Data>
      </ds:KeyInfo>
    </md:KeyDescriptor>
    <md:SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.lifeplan-rakuten-sec.jp/saml2/idp/SingleLogoutService.php"/>
    <md:NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</md:NameIDFormat>
    <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.lifeplan-rakuten-sec.jp/saml2/idp/SSOService.php"/>
  </md:IDPSSODescriptor>
  <md:ContactPerson contactType="technical">
    <md:GivenName>Administrator</md:GivenName>
    <md:EmailAddress>mailto:obara@worx.co.jp</md:EmailAddress>
  </md:ContactPerson>
</md:EntityDescriptor>

In SimpleSAMLphp flat file format - use this if you are using a SimpleSAMLphp entity on the other side:

$metadata['https://idp.lifeplan-rakuten-sec.jp/saml2/idp/metadata.php'] = [
    'metadata-set' => 'saml20-idp-remote',
    'entityid' => 'https://idp.lifeplan-rakuten-sec.jp/saml2/idp/metadata.php',
    'SingleSignOnService' => [
        [
            'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
            'Location' => 'https://idp.lifeplan-rakuten-sec.jp/saml2/idp/SSOService.php',
        ],
    ],
    'SingleLogoutService' => [
        [
            'Binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect',
            'Location' => 'https://idp.lifeplan-rakuten-sec.jp/saml2/idp/SingleLogoutService.php',
        ],
    ],
    'certData' => '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',
    'NameIDFormat' => 'urn:oasis:names:tc:SAML:2.0:nameid-format:transient',
    'contacts' => [
        [
            'emailAddress' => 'obara@worx.co.jp',
            'contactType' => 'technical',
            'givenName' => 'Administrator',
        ],
    ],
];

Certificates

Download the X509 certificates as PEM-encoded files.