Here is your SAML2 assertion for EPR INT Emedo Frehner. You can now get a XUA assertion with the Get-X-User-Assertion transaction in your EPR community.
Back to home.
XML inspector
Please be aware that reformatting the assertion makes the signature invalid. Don't try to use this one.
<saml2:Assertion xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="Assertion_c46b27c8-573a-481d-9249-87d29e330021" IssueInstant="2026-05-23T17:41:51.939Z" Version="2.0">
<saml2:Issuer>urn:oid:2.16.756.5.30.1.191.999.10</saml2:Issuer>
<ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:SignedInfo>
<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
<ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
<ds:Reference URI="#Assertion_c46b27c8-573a-481d-9249-87d29e330021">
<ds:Transforms>
<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
</ds:Transforms>
<ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
<ds:DigestValue>NQGbl8IoklVYpNYGh+1yWnQzCCC7+GuGODMt5PQnZzE=</ds:DigestValue>
</ds:Reference>
</ds:SignedInfo>
<ds:SignatureValue>
LWxV1yYn9bvx2pgFq4kianLmf1wiFYZ/pNhNBnl2sCrNryi/N+Ldq/wJ6cohtQ5qfrU5HLuhPrst
QRwVY89K2Kt+q+Zh8RVDsMRx7XnHFHfik/2crO1aYnQhPg1BeOY5jzK31l+JrRDbREz/K+mAOQKU
yRuvxrA2C+TyDSXvFJrZbWZkxY0X/KyhGbHVpS95k9FcfNzZPClPoKFusJA6M27lTJzIyOW7Zx1Q
yzog7BjBVl2BZ9mUHFvO7rZN+TMyxHBgmlvtZYxgsH2gPiymQzT9jVmKg9+TpDa7adiapyLpituh
7o3hChBENgzJnfDhfFp6OZGmUvItzLgpBgf6ZK3OXHcNwYU7npqnkQpH9ojvsTg1v+bxLfc9tQZx
spTUwWRN5YgsrJg951lP0ugy7RsMkVD/IUL5wR5hFQAUCN/lKww5bZou6dMkv5PiNe7YY9xOeXEw
WWY/oFpUSTAfY3l3cUuTXf8HP+uuzPtZGw6Faw+9cv/OJPJR3IL/Eugn
</ds:SignatureValue>
<ds:KeyInfo>
<ds:X509Data>
<ds:X509Certificate>MIIF7DCCBNSgAwIBAgIQAtkW5++akCVO2v2+bczREDANBgkqhkiG9w0BAQsFADBTMQswCQYDVQQG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</ds:X509Certificate>
</ds:X509Data>
</ds:KeyInfo>
</ds:Signature>
<saml2:Subject>
<saml2:NameID Format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent">2.16.756.5.30.1.191.999.10</saml2:NameID>
<saml2:SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer"/>
</saml2:Subject>
<saml2:Conditions NotBefore="2026-05-23T17:41:51.939Z" NotOnOrAfter="2026-05-23T17:51:51.939Z"/>
<saml2:AuthnStatement AuthnInstant="2026-05-23T17:41:51.939Z" SessionNotOnOrAfter="2026-05-23T17:51:51.939Z">
<saml2:AuthnContext>
<saml2:AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:unspecified</saml2:AuthnContextClassRef>
</saml2:AuthnContext>
</saml2:AuthnStatement>
</saml2:Assertion>
How to use
There are two ways to more easily consume this SAML assertion.
-
You can specify the header
Accept: application/xmlwhen requesting this page (GET /tcu/epr_int_emedo_frehner) to receive the assertion XML directly, instead of an HTML page. - You can specify the header
ikit-inject-tcu-token: epr_int_emedo_frehnerin your requests to the IKIT, and it will automatically fetch and inject this SAML assertion before sending your request to its recipient.