Go to file
Itamar Ostricher 173c2e8ac5 Use inline PySAML2 metadata instead of local tempfile
Verified working with updated Python packages under Python 2.7.10
.profile.d add xmlsec1 binaries to paths
docs/_static Add README
templates Update Python packages to more recent versions, including required fix in templates
.buildpacks Add support for Heroku:
.gitignore Initial commit
LICENSE Initial commit
Procfile Add support for Heroku:
README.md Update README with development libraries.
README.org Update README with development libraries.
app.py Use inline PySAML2 metadata instead of local tempfile
requirements.txt Update Python packages to more recent versions, including required fix in templates

README.md

Introduction

This is an example SAML SP service written using Flask and pysaml2.

Requirements

You will also need a development environment capable of compiling Python packages and the "libffi" and "libxmlsec1" development libraries, which are needed by PySAML2.

Instructions for installing these development libraries will differ depending on your host operating system.

Mac OS X

$ brew install libffi libxmlsec1

RHEL

$ sudo yum install libffi-devel xmlsec1 xmlsec1-openssl

Installation

$ virtualenv venv
$ source venv/bin/activate
$ pip install -r requirements.txt 

Running

$ python app.py 

Testing

The fastest way to test this example SAML SP is to use the saml.oktadev.com service.

Here is how:

  1. Edit the "app.py" file and uncomment the line in the "test" line in "metadata_url_for" dictionary.

    $ $EDITOR app.py
    

    Change this line:

    # 'test': 'http://idp.oktadev.com/metadata',                                                                                                
    

    To this:

    'test': 'http://idp.oktadev.com/metadata',
    
  2. Start the example SAML SP

    $ python app.py
    
  3. Start ngrok on the port that the example SAML SP is running on. By default, the example SAML SP runs on TCP 5000.

    $ ngrok http 5000
    

    You will need to install ngrok if you haven't already.

    Here is what it should look like:

    img

  4. Run saml.oktadev.com to test this example SAML SP

Testing the security of your SAML SP

After successfully completing the steps in the "Testing" section above, select the "Run security validation" option to have saml.oktadev.com run an extended series of security tests against your SAML SP.

Contact

Updates or corrections to this document are very welcome. Feel free to send pull requests with suggestions.

Additionally, comments or questions can be sent to: developers@okta.com