Integration  KIT IDP

Here is your SAML2 assertion for EPR INT Emedo Frehner. You can now get a XUA assertion with the Get-X-User-Assertion transaction in your EPR community.

Back to home.

XML inspector

Please be aware that reformatting the assertion makes the signature invalid. Don't try to use this one.

<saml2:Assertion xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="Assertion_c46b27c8-573a-481d-9249-87d29e330021" IssueInstant="2026-05-23T17:41:51.939Z" Version="2.0">
  <saml2:Issuer>urn:oid:2.16.756.5.30.1.191.999.10</saml2:Issuer>
  <ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
    <ds:SignedInfo>
      <ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
      <ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
      <ds:Reference URI="#Assertion_c46b27c8-573a-481d-9249-87d29e330021">
        <ds:Transforms>
          <ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
          <ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
        </ds:Transforms>
        <ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
        <ds:DigestValue>NQGbl8IoklVYpNYGh+1yWnQzCCC7+GuGODMt5PQnZzE=</ds:DigestValue>
      </ds:Reference>
    </ds:SignedInfo>
    <ds:SignatureValue>
LWxV1yYn9bvx2pgFq4kianLmf1wiFYZ/pNhNBnl2sCrNryi/N+Ldq/wJ6cohtQ5qfrU5HLuhPrst&#13;
QRwVY89K2Kt+q+Zh8RVDsMRx7XnHFHfik/2crO1aYnQhPg1BeOY5jzK31l+JrRDbREz/K+mAOQKU&#13;
yRuvxrA2C+TyDSXvFJrZbWZkxY0X/KyhGbHVpS95k9FcfNzZPClPoKFusJA6M27lTJzIyOW7Zx1Q&#13;
yzog7BjBVl2BZ9mUHFvO7rZN+TMyxHBgmlvtZYxgsH2gPiymQzT9jVmKg9+TpDa7adiapyLpituh&#13;
7o3hChBENgzJnfDhfFp6OZGmUvItzLgpBgf6ZK3OXHcNwYU7npqnkQpH9ojvsTg1v+bxLfc9tQZx&#13;
spTUwWRN5YgsrJg951lP0ugy7RsMkVD/IUL5wR5hFQAUCN/lKww5bZou6dMkv5PiNe7YY9xOeXEw&#13;
WWY/oFpUSTAfY3l3cUuTXf8HP+uuzPtZGw6Faw+9cv/OJPJR3IL/Eugn
</ds:SignatureValue>
    <ds:KeyInfo>
      <ds:X509Data>
        <ds:X509Certificate>MIIF7DCCBNSgAwIBAgIQAtkW5++akCVO2v2+bczREDANBgkqhkiG9w0BAQsFADBTMQswCQYDVQQG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</ds:X509Certificate>
      </ds:X509Data>
    </ds:KeyInfo>
  </ds:Signature>
  <saml2:Subject>
    <saml2:NameID Format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent">2.16.756.5.30.1.191.999.10</saml2:NameID>
    <saml2:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer"/>
  </saml2:Subject>
  <saml2:Conditions NotBefore="2026-05-23T17:41:51.939Z" NotOnOrAfter="2026-05-23T17:51:51.939Z"/>
  <saml2:AuthnStatement AuthnInstant="2026-05-23T17:41:51.939Z" SessionNotOnOrAfter="2026-05-23T17:51:51.939Z">
    <saml2:AuthnContext>
      <saml2:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:unspecified</saml2:AuthnContextClassRef>
    </saml2:AuthnContext>
  </saml2:AuthnStatement>
</saml2:Assertion>
How to use

There are two ways to more easily consume this SAML assertion.

  1. You can specify the header Accept: application/xml when requesting this page (GET /tcu/epr_int_emedo_frehner) to receive the assertion XML directly, instead of an HTML page.
  2. You can specify the header ikit-inject-tcu-token: epr_int_emedo_frehner in your requests to the IKIT, and it will automatically fetch and inject this SAML assertion before sending your request to its recipient.