Tool to generate Federation Metadata - yes, remember the old SAML WS-Federation stuff
Disclaimer: Use at your own risk – no warranties are granted or implied
Original Blog post: Federation Metadata Generation Tool
If you’ve worked with Windows Identity Foundation (WIF) without the help of ADFS 2.0, you’ll run into situations where you’ll need to potentially generate or regenerate the metadata used for federation.
Additionally, while WIF supports SAML tokens, it doesn’t have support for SAML Passive Requestor protocol (urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST) - you get that with ADFS 2.0.
I needed the ability to quickly generate meta-data and regenerate as needed.
I created a very simple tool – hacked in a few hours - that uses the meta data serialization
support in WIF (MetadataSerializer) to generate the meta data.
This tool will generate the following metadata
- IDPSSODescriptor "urn:oasis:names:tc:SAML:2.0:protocol"
- SPSSODescriptor "urn:oasis:names:tc:SAML:2.0:protocol"
The tool makes use of the PropertyGrid for binding to some types used to generate, and in order to read the certificate private key it needs permissions – if you run elevated, you should have access.
tags: Identity, WIF, Federation, Security