Skip to content

Instantly share code, notes, and snippets.

@IgorKarymov
Created October 4, 2013 13:42
Show Gist options
  • Save IgorKarymov/6826130 to your computer and use it in GitHub Desktop.
Save IgorKarymov/6826130 to your computer and use it in GitHub Desktop.
simplesamlphp
<samlp:Response ID="pfx56c3177d-f249-e6ad-8130-0d391e959c7f" Version="2.0" IssueInstant="2013-10-04T12:47:49Z" Destination="https://10.10.18.25/saml/consume" InResponseTo="27514362-2cf3-11e3-9269-3c970e5b14dc">
<saml:Issuer>http://192.51.100.21/simplesamlphp/saml2/idp/metadata.php</saml:Issuer>
<ds:Signature>
<ds:SignedInfo>
<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
<ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<ds:Reference URI="#pfx56c3177d-f249-e6ad-8130-0d391e959c7f">
<ds:Transforms>
<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
</ds:Transforms>
<ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<ds:DigestValue>iVhylKJ7/LElPl71wnQNGwFnMz4=</ds:DigestValue>
</ds:Reference>
</ds:SignedInfo>
<ds:SignatureValue>jhRRg8BKRWG+7ha9+Dlq6QkJM52BlxukMGNsUX8G9UQsWeEsQIIw1FuuzoRfJnn8A7vFhuFCzARFNoWa3i9iF1GAuVPEFE3FUotTuVlhaug51tfEDnK4t5V4Rm4UqM8mdA+oIMtqn7WIdGzsaZtcL8s7HuHObn6N3cV9SXjL4BckWletXeuZdDqNhbg3epe6Lgxm4AhMqIFbHSDuTGIea01JU8xcMHZZ5kTJXkxmRtc1rZOH2V1hPrzvpGcy4DoFkoeTTPG66K1q7i/x8kjHOGNhc4vjaWUgKz/PpTtknAb7ana8346+ElLDaGPJLRMDVF5UuE7ENM1yawUCoaE0/w==</ds:SignatureValue>
<ds:KeyInfo>
<ds:X509Data>
<ds:X509Certificate>MIIDaTCCAlGgAwIBAgIJAKrVVqy0oAC7MA0GCSqGSIb3DQEBBQUAMEsxCzAJBgNVBAYTAlJVMRkwFwYDVQQIDBBTYWludCBQZXRlcnNidXJnMSEwHwYDVQQKDBhJbnRlcm5ldCBXaWRnaXRzIFB0eSBMdGQwHhcNMTMwOTI0MTUwMzMxWhcNMjMwOTI0MTUwMzMxWjBLMQswCQYDVQQGEwJSVTEZMBcGA1UECAwQU2FpbnQgUGV0ZXJzYnVyZzEhMB8GA1UECgwYSW50ZXJuZXQgV2lkZ2l0cyBQdHkgTHRkMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2obqgyJrHQooaE1fCcYxDQo+GKxd0XwBaOjDPartRSufNDsPfDFX6+ERR/RYF8khOookZ8xXdPSh9dghayqhXWUMmv8AkoNvlF1BO402deuR5B/AMEd8HFrvLrh2SnhIhup032xYT7y9IgAMpjepfsBXL588xm0ULMYhpel0h2UxhRlSJWx8S3BLbCSuDpFotuCntWdurvHbT3ZnCyThsflJJTZA7LDtFWOpwF6se3R/s5V6KXyPzaLBo+tqcYnfdt9SuBYF2SBgi8jQ1XPjwMn7kInJ4PSsGpcFwkhAWKRGvEXJVo4guY30n0PqD1+8edvpXQ9tCyBO0d3V6zsEBQIDAQABo1AwTjAdBgNVHQ4EFgQUIttBefA2MMRacOxIgwXQzhsuzsEwHwYDVR0jBBgwFoAUIttBefA2MMRacOxIgwXQzhsuzsEwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAWd4bX7Ps6f/Fvlk2vDyVDNee7X8v99ABaAZOnQfr9vdzAToVOva7ooU0YRYAx/JI/KcWOqPs8j9Xm9Ic5vmu7HK5OEgPU4G2nJNXT2OWwBIB1SmcPwf7GWEW4SxbrWQRtDAIfWbYDMRd5Kd3gTLNxQLKK8T6W+jNtptzSKuW8FE+/KZ7QwgpY2kRzpIfjlddpwU6je5s7XhOBlmt7X1jEI8hOETfN1bXYzbymG0yIdrVUTlkYHs9qjJYwKCwEZTBlsNhEJm1O5UyQ7XGImRn9JTf+CCdaf+MyMa55P1ZJhJz1Rp4BvSiKpy4kFIUhmEZUBXqcLKRc1JIebP20v3exQ==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</ds:Signature>
<samlp:Status>
<samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/>
</samlp:Status>
<saml:Assertion ID="pfxce4cba84-3180-d307-b8a3-280495696c07" Version="2.0" IssueInstant="2013-10-04T12:47:49Z">
<saml:Issuer>http://192.51.100.21/simplesamlphp/saml2/idp/metadata.php</saml:Issuer>
<ds:Signature>
<ds:SignedInfo>
<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
<ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<ds:Reference URI="#pfxce4cba84-3180-d307-b8a3-280495696c07">
<ds:Transforms>
<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
</ds:Transforms>
<ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<ds:DigestValue>qYjbFQVLcSy5jFa/K0wuEOz5j8w=</ds:DigestValue>
</ds:Reference>
</ds:SignedInfo>
<ds:SignatureValue>OlF7G+rZZ6AJc/9brclC43INcKt4THPZM1zYoW9rxicOB2DbSJunCJCpYBGu0ybeiREBLBzobeiwKgyO71+P5uBMcXZsDtcAFLR5K0IKiPQVMlqHV8ptU9Rud4RjAfV27Ky3NWR/9dI6GLr6zEGnO7ZrARt0XauSkLR9pewGVDxtOG7ZInQ512301vsay8X33osP4LUrtJoSyo6w/MkUOCM/BQwtga+zrr8F1ez0sI7rXZ+a6yngsZREFaY7/d1yPO+s+OsuDuUfkVOKMq0D+JxAPtvRj0ToCcGJA9qDTprWZco6MfNhcATKjJQXpPBjRBm1HuI3fyIuvqRfOcJAPQ==</ds:SignatureValue>
<ds:KeyInfo>
<ds:X509Data>
<ds:X509Certificate>MIIDaTCCAlGgAwIBAgIJAKrVVqy0oAC7MA0GCSqGSIb3DQEBBQUAMEsxCzAJBgNVBAYTAlJVMRkwFwYDVQQIDBBTYWludCBQZXRlcnNidXJnMSEwHwYDVQQKDBhJbnRlcm5ldCBXaWRnaXRzIFB0eSBMdGQwHhcNMTMwOTI0MTUwMzMxWhcNMjMwOTI0MTUwMzMxWjBLMQswCQYDVQQGEwJSVTEZMBcGA1UECAwQU2FpbnQgUGV0ZXJzYnVyZzEhMB8GA1UECgwYSW50ZXJuZXQgV2lkZ2l0cyBQdHkgTHRkMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA2obqgyJrHQooaE1fCcYxDQo+GKxd0XwBaOjDPartRSufNDsPfDFX6+ERR/RYF8khOookZ8xXdPSh9dghayqhXWUMmv8AkoNvlF1BO402deuR5B/AMEd8HFrvLrh2SnhIhup032xYT7y9IgAMpjepfsBXL588xm0ULMYhpel0h2UxhRlSJWx8S3BLbCSuDpFotuCntWdurvHbT3ZnCyThsflJJTZA7LDtFWOpwF6se3R/s5V6KXyPzaLBo+tqcYnfdt9SuBYF2SBgi8jQ1XPjwMn7kInJ4PSsGpcFwkhAWKRGvEXJVo4guY30n0PqD1+8edvpXQ9tCyBO0d3V6zsEBQIDAQABo1AwTjAdBgNVHQ4EFgQUIttBefA2MMRacOxIgwXQzhsuzsEwHwYDVR0jBBgwFoAUIttBefA2MMRacOxIgwXQzhsuzsEwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAWd4bX7Ps6f/Fvlk2vDyVDNee7X8v99ABaAZOnQfr9vdzAToVOva7ooU0YRYAx/JI/KcWOqPs8j9Xm9Ic5vmu7HK5OEgPU4G2nJNXT2OWwBIB1SmcPwf7GWEW4SxbrWQRtDAIfWbYDMRd5Kd3gTLNxQLKK8T6W+jNtptzSKuW8FE+/KZ7QwgpY2kRzpIfjlddpwU6je5s7XhOBlmt7X1jEI8hOETfN1bXYzbymG0yIdrVUTlkYHs9qjJYwKCwEZTBlsNhEJm1O5UyQ7XGImRn9JTf+CCdaf+MyMa55P1ZJhJz1Rp4BvSiKpy4kFIUhmEZUBXqcLKRc1JIebP20v3exQ==</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</ds:Signature>
<saml:Subject>
<saml:NameID SPNameQualifier="https://10.10.18.25/saml/metadata" Format="urn:oasis:names:tc:SAML:2.0:nameid-format:transient">_7a4e9ae4c6245acca9c988b84585872db4e358587c</saml:NameID>
<saml:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer">
<saml:SubjectConfirmationData NotOnOrAfter="2013-10-04T12:52:49Z" Recipient="https://10.10.18.25/saml/consume" InResponseTo="27514362-2cf3-11e3-9269-3c970e5b14dc"/>
</saml:SubjectConfirmation>
</saml:Subject>
<saml:Conditions NotBefore="2013-10-04T12:47:19Z" NotOnOrAfter="2013-10-04T12:52:49Z">
<saml:AudienceRestriction>
<saml:Audience>https://10.10.18.25/saml/metadata</saml:Audience>
</saml:AudienceRestriction>
</saml:Conditions>
<saml:AuthnStatement AuthnInstant="2013-10-04T12:47:49Z" SessionNotOnOrAfter="2013-10-04T20:47:49Z" SessionIndex="_388b4b85a2c7ee6076f83464259ee5cd69116f6688">
<saml:AuthnContext>
<saml:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:Password</saml:AuthnContextClassRef>
</saml:AuthnContext>
</saml:AuthnStatement>
<saml:AttributeStatement>
<saml:Attribute Name="instanceType" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">4</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="whenCreated" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">20110602081928.0Z</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="whenChanged" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">20130926122546.0Z</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="uSNCreated" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">2329129</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="uSNChanged" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">9638282</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="userAccountControl" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">66048</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="badPwdCount" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">0</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="codePage" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">0</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="countryCode" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">0</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="homeDirectory" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">\\unison\dfs\common\ikarymov</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="homeDrive" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">U:</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="badPasswordTime" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">129657415529662369</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="lastLogon" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">129862893367715926</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="pwdLastSet" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">129714527137994303</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="primaryGroupID" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">513</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="accountExpires" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">9223372036854775807</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="logonCount" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">150</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="sAMAccountName" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">ikarymov</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="sAMAccountType" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">805306368</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="userPrincipalName" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">ikarymov@spb.unison.com</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="objectCategory" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">CN=Person,CN=Schema,CN=Configuration,DC=spb,DC=unison,DC=com</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="msNPAllowDialin" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">TRUE</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="lastLogonTimestamp" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">130246719312911221</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="msSFU30Name" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">ikarymov</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="urn:oid:2.5.4.0" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">top</saml:AttributeValue>
<saml:AttributeValue xsi:type="xs:string">person</saml:AttributeValue>
<saml:AttributeValue xsi:type="xs:string">organizationalPerson</saml:AttributeValue>
<saml:AttributeValue xsi:type="xs:string">user</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">igor karymov</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">karymov</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="urn:oid:2.5.4.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">Senior Software Developer</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">igor</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="urn:oid:2.5.4.49" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">CN=igor karymov,OU=People,DC=spb,DC=unison,DC=com</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">igor karymov</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="urn:oid:2.5.4.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">igor karymov</saml:AttributeValue>
</saml:Attribute>
<saml:Attribute Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
<saml:AttributeValue xsi:type="xs:string">ikarymov</saml:AttributeValue>
</saml:Attribute>
</saml:AttributeStatement>
</saml:Assertion>
</samlp:Response>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment