Skip to content

Commit 7101bdb

Browse files
committed
read ResponseLocation from IdP metadata
1 parent 0487361 commit 7101bdb

3 files changed

Lines changed: 8 additions & 1 deletion

File tree

src/Saml2/IdPMetadataParser.php

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -156,6 +156,7 @@ public static function parseXML($xml, $entityId = null, $desiredNameIdFormat = n
156156
if ($sloNodes->length > 0) {
157157
$metadataInfo['idp']['singleLogoutService'] = array(
158158
'url' => $sloNodes->item(0)->getAttribute('Location'),
159+
'responseUrl' => $sloNodes->item(0)->getAttribute('ResponseLocation'),
159160
'binding' => $sloNodes->item(0)->getAttribute('Binding')
160161
);
161162
}

tests/data/metadata/idp/metadata.xml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -68,7 +68,7 @@ WQO0LPxPqRiUqUzyhDhLo/xXNrHCu4VbMw==</ds:X509Certificate>
6868
</ds:X509Data>
6969
</ds:KeyInfo>
7070
</KeyDescriptor>
71-
<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.examle.com/saml/slo"/>
71+
<SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.examle.com/saml/slo" ResponseLocation="https://idp.examle.com/saml/slr"/>
7272
<NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
7373
<SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.examle.com/saml/sso"/>
7474
</IDPSSODescriptor>

tests/src/OneLogin/Saml2/IdPMetadataParserTest.php

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -26,6 +26,7 @@ public function testParseFileXML()
2626
),
2727
'singleLogoutService' => array(
2828
'url' => 'https://example.onelogin.com/trust/saml2/http-redirect/slo/645460',
29+
'responseUrl' => '',
2930
'binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect'
3031
),
3132
'x509cert' => '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'
@@ -74,6 +75,7 @@ public function testParseXML()
7475
),
7576
'singleLogoutService' => array(
7677
'url' => 'https://idp.examle.com/saml/slo',
78+
'responseUrl' => 'https://idp.examle.com/saml/slr',
7779
'binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect'
7880
),
7981
'x509certMulti' => array(
@@ -180,6 +182,7 @@ public function testParseDesiredBindingAll()
180182
),
181183
"singleLogoutService" => array(
182184
"url" => "http://idp.example.com/logout",
185+
"responseUrl" => "",
183186
"binding" => "urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
184187
)
185188
)
@@ -296,6 +299,7 @@ public function testParseMultiCerts()
296299
"idp" => array(
297300
"singleLogoutService" => array(
298301
"url" => "https://idp.examle.com/saml/slo",
302+
"responseUrl" => "",
299303
"binding" => "urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
300304
),
301305
"x509certMulti" => array(
@@ -333,6 +337,7 @@ public function testParseMultiSigningCerts()
333337
"idp" => array(
334338
"singleLogoutService" => array(
335339
"url" => "https://idp.examle.com/saml/slo",
340+
"responseUrl" => "",
336341
"binding" => "urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
337342
),
338343
"x509certMulti" => array(
@@ -428,6 +433,7 @@ public function testInjectIntoSettings()
428433
),
429434
'singleLogoutService' => array(
430435
'url' => 'https://idp.adfs.example.com/adfs/ls/',
436+
'responseUrl' => '',
431437
'binding' => 'urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect'
432438
),
433439
'x509certMulti' => array(

0 commit comments

Comments
 (0)