realm-identity-provider-saml.html 30 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428
  1. <div class="col-sm-9 col-md-10 col-sm-push-3 col-md-push-2" data-ng-init="initSamlProvider()">
  2. <ol class="breadcrumb">
  3. <li><a href="#/realms/{{realm.realm}}/identity-provider-settings">{{:: 'identity-providers' | translate}}</a></li>
  4. <li data-ng-show="!newIdentityProvider && identityProvider.displayName">{{identityProvider.displayName}}</li>
  5. <li data-ng-show="!newIdentityProvider && !identityProvider.displayName">{{identityProvider.alias}}</li>
  6. <li data-ng-show="newIdentityProvider">{{:: 'add-identity-provider' | translate}}</li>
  7. </ol>
  8. <kc-tabs-identity-provider></kc-tabs-identity-provider>
  9. <form class="form-horizontal" name="realmForm" novalidate kc-read-only="!access.manageIdentityProviders">
  10. <fieldset>
  11. <div class="form-group clearfix">
  12. <label class="col-md-2 control-label" for="redirectUri">{{:: 'redirect-uri' | translate}}</label>
  13. <div class="col-sm-6">
  14. <input class="form-control" id="redirectUri" type="text" value="{{callbackUrl}}{{identityProvider.alias}}/endpoint" readonly kc-select-action="click">
  15. </div>
  16. <kc-tooltip>{{:: 'redirect-uri.tooltip' | translate}}</kc-tooltip>
  17. </div>
  18. </fieldset>
  19. <fieldset>
  20. <div class="form-group clearfix">
  21. <label class="col-md-2 control-label" for="identifier"><span class="required">*</span> {{:: 'alias' | translate}}</label>
  22. <div class="col-md-6">
  23. <input kc-no-reserved-chars class="form-control" id="identifier" type="text" ng-model="identityProvider.alias" data-ng-readonly="!newIdentityProvider" required>
  24. </div>
  25. <kc-tooltip>{{:: 'identity-provider.alias.tooltip' | translate}}</kc-tooltip>
  26. </div>
  27. <div class="form-group clearfix">
  28. <label class="col-md-2 control-label" for="displayName"> {{:: 'display-name' | translate}}</label>
  29. <div class="col-md-6">
  30. <input class="form-control" id="displayName" type="text" ng-model="identityProvider.displayName">
  31. </div>
  32. <kc-tooltip>{{:: 'identity-provider.display-name.tooltip' | translate}}</kc-tooltip>
  33. </div>
  34. <div class="form-group">
  35. <label class="col-md-2 control-label" for="enabled">{{:: 'enabled' | translate}}</label>
  36. <div class="col-md-6">
  37. <input ng-model="identityProvider.enabled" id="enabled" onoffswitch on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  38. </div>
  39. <kc-tooltip>{{:: 'identity-provider.enabled.tooltip' | translate}}</kc-tooltip>
  40. </div>
  41. <div class="form-group">
  42. <label class="col-md-2 control-label" for="storeToken">{{:: 'store-tokens' | translate}}</label>
  43. <div class="col-md-6">
  44. <input ng-model="identityProvider.storeToken" id="storeToken" onoffswitch on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  45. </div>
  46. <kc-tooltip>{{:: 'identity-provider.store-tokens.tooltip' | translate}}</kc-tooltip>
  47. </div>
  48. <div class="form-group">
  49. <label class="col-md-2 control-label" for="storedTokensReadable">{{:: 'stored-tokens-readable' | translate}}</label>
  50. <div class="col-md-6">
  51. <input ng-model="identityProvider.addReadTokenRoleOnCreate" id="storedTokensReadable" onoffswitch on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  52. </div>
  53. <kc-tooltip>{{:: 'identity-provider.stored-tokens-readable.tooltip' | translate}}</kc-tooltip>
  54. </div>
  55. <div class="form-group">
  56. <label class="col-md-2 control-label" for="trustEmail">{{:: 'trust-email' | translate}}</label>
  57. <div class="col-md-6">
  58. <input ng-model="identityProvider.trustEmail" name="identityProvider.trustEmail" id="trustEmail" onoffswitch on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  59. </div>
  60. <kc-tooltip>{{:: 'trust-email.tooltip' | translate}}</kc-tooltip>
  61. </div>
  62. <div class="form-group">
  63. <label class="col-md-2 control-label" for="linkOnly">{{:: 'link-only' | translate}}</label>
  64. <div class="col-md-6">
  65. <input ng-model="identityProvider.linkOnly" name="identityProvider.trustEmail" id="linkOnly" onoffswitch on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  66. </div>
  67. <kc-tooltip>{{:: 'link-only.tooltip' | translate}}</kc-tooltip>
  68. </div>
  69. <div class="form-group">
  70. <label class="col-md-2 control-label" for="hideOnLoginPage">{{:: 'hide-on-login-page' | translate}}</label>
  71. <div class="col-md-6">
  72. <input ng-model="identityProvider.config.hideOnLoginPage" name="identityProvider.config.hideOnLoginPage" id="hideOnLoginPage" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  73. </div>
  74. <kc-tooltip>{{:: 'hide-on-login-page.tooltip' | translate}}</kc-tooltip>
  75. </div>
  76. <div class="form-group">
  77. <label class="col-md-2 control-label" for="guiOrder">{{:: 'gui-order' | translate}}</label>
  78. <div class="col-md-6">
  79. <input class="form-control" id="guiOrder" type="text" ng-model="identityProvider.config.guiOrder">
  80. </div>
  81. <kc-tooltip>{{:: 'gui-order.tooltip' | translate}}</kc-tooltip>
  82. </div>
  83. <div class="form-group">
  84. <label class="col-md-2 control-label" for="firstBrokerLoginFlowAlias">{{:: 'first-broker-login-flow' | translate}}</label>
  85. <div class="col-md-6">
  86. <div>
  87. <select class="form-control" id="firstBrokerLoginFlowAlias"
  88. ng-model="identityProvider.firstBrokerLoginFlowAlias"
  89. ng-options="flow.alias as flow.alias for flow in authFlows"
  90. required>
  91. </select>
  92. </div>
  93. </div>
  94. <kc-tooltip>{{:: 'first-broker-login-flow.tooltip' | translate}}</kc-tooltip>
  95. </div>
  96. <div class="form-group">
  97. <label class="col-md-2 control-label" for="postBrokerLoginFlowAlias">{{:: 'post-broker-login-flow' | translate}}</label>
  98. <div class="col-md-6">
  99. <div>
  100. <select class="form-control" id="postBrokerLoginFlowAlias"
  101. ng-model="identityProvider.postBrokerLoginFlowAlias"
  102. ng-options="flow.alias as flow.alias for flow in postBrokerAuthFlows">
  103. </select>
  104. </div>
  105. </div>
  106. <kc-tooltip>{{:: 'post-broker-login-flow.tooltip' | translate}}</kc-tooltip>
  107. </div>
  108. <div class="form-group">
  109. <label class="col-md-2 control-label" for="syncMode">{{:: 'sync-mode' | translate}}</label>
  110. <div class="col-md-6">
  111. <div>
  112. <select class="form-control" id="syncMode"
  113. ng-model="identityProvider.config.syncMode"
  114. required>
  115. <option id="syncMode_import" name="syncMode" value="IMPORT">{{:: 'sync-mode.import' | translate}}</option>
  116. <option id="syncMode_legacy" name="syncMode" value="LEGACY">{{:: 'sync-mode.legacy' | translate}}</option>
  117. <option id="syncMode_force" name="syncMode" value="FORCE">{{:: 'sync-mode.force' | translate}}</option>
  118. </select>
  119. </div>
  120. </div>
  121. <kc-tooltip>{{:: 'sync-mode.tooltip' | translate}}</kc-tooltip>
  122. </div>
  123. <div class="form-group" data-ng-show="!importFile && !newIdentityProvider">
  124. <label class="col-md-2 control-label">{{:: 'endpoints' | translate}}</label>
  125. <div class="col-md-6">
  126. <a class="form-control" ng-href="{{callbackUrl}}{{identityProvider.alias}}/endpoint/descriptor" rel="noopener noreferrer" target="_blank">{{:: 'identity-provider.saml.protocol-endpoints.saml' | translate}}</a>
  127. </div>
  128. <kc-tooltip>{{:: 'identity-provider.saml.protocol-endpoints.saml.tooltip' | translate}}</kc-tooltip>
  129. </div>
  130. </fieldset>
  131. <fieldset>
  132. <legend uncollapsed><span class="text">{{:: 'saml-config' | translate}}</span> <kc-tooltip>{{:: 'identity-provider.saml-config.tooltip' | translate}}</kc-tooltip></legend>
  133. <div class="form-group clearfix">
  134. <label class="col-md-2 control-label" for="entityId"><span class="required">*</span> {{:: 'identity-provider.saml.entity-id' | translate}}</label>
  135. <div class="col-md-6">
  136. <input kc-no-reserved-chars class="form-control" id="entityId" type="text" ng-model="identityProvider.config.entityId" required>
  137. </div>
  138. <kc-tooltip>{{:: 'identity-provider.saml.entity-id.tooltip' | translate}}</kc-tooltip>
  139. </div>
  140. <div class="form-group clearfix">
  141. <label class="col-md-2 control-label" for="singleSignOnServiceUrl"><span class="required">*</span> {{:: 'single-signon-service-url' | translate}}</label>
  142. <div class="col-md-6">
  143. <input class="form-control" id="singleSignOnServiceUrl" type="text" ng-model="identityProvider.config.singleSignOnServiceUrl" required>
  144. </div>
  145. <kc-tooltip>{{:: 'saml.single-signon-service-url.tooltip' | translate}}</kc-tooltip>
  146. </div>
  147. <div class="form-group clearfix">
  148. <label class="col-md-2 control-label" for="singleSignOnServiceUrl">{{:: 'single-logout-service-url' | translate}}</label>
  149. <div class="col-md-6">
  150. <input class="form-control" id="singleLogoutServiceUrl" type="text" ng-model="identityProvider.config.singleLogoutServiceUrl">
  151. </div>
  152. <kc-tooltip>{{:: 'saml.single-logout-service-url.tooltip' | translate}}</kc-tooltip>
  153. </div>
  154. <div class="form-group">
  155. <label class="col-sm-2 control-label" for="backchannelSupported">{{:: 'backchannel-logout' | translate}}</label>
  156. <div class="col-sm-4">
  157. <input ng-model="identityProvider.config.backchannelSupported" id="backchannelSupported" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  158. </div>
  159. <kc-tooltip>{{:: 'backchannel-logout.tooltip' | translate}}</kc-tooltip>
  160. </div>
  161. <div class="form-group clearfix">
  162. <label class="col-md-2 control-label" for="nameIDPolicyFormat">{{:: 'nameid-policy-format' | translate}}</label>
  163. <div class="col-md-6">
  164. <select id="nameIDPolicyFormat" ng-model="identityProvider.config.nameIDPolicyFormat"
  165. ng-options="nameFormat.format as nameFormat.name for nameFormat in nameIdFormats">
  166. </select>
  167. <!-- <input class="form-control" id="nameIDPolicyFormat" type="text" ng-model="identityProvider.config.nameIDPolicyFormat"> -->
  168. </div>
  169. <kc-tooltip>{{:: 'nameid-policy-format.tooltip' | translate}}</kc-tooltip>
  170. </div>
  171. <div class="form-group clearfix">
  172. <label class="col-md-2 control-label" for="principalType">{{:: 'saml.principal-type' | translate}}</label>
  173. <div class="col-md-6">
  174. <select id="principalType" ng-model="identityProvider.config.principalType"
  175. ng-options="pType.type as pType.name for pType in principalTypes">
  176. </select>
  177. </div>
  178. <kc-tooltip>{{:: 'saml.principal-type.tooltip' | translate}}</kc-tooltip>
  179. </div>
  180. <div class="form-group clearfix" data-ng-show="identityProvider.config.principalType.endsWith('ATTRIBUTE')">
  181. <label class="col-md-2 control-label" for="principalAttribute">{{:: 'saml.principal-attribute' | translate}}</label>
  182. <div class="col-md-6">
  183. <input class="form-control" id="principalAttribute" type="text" ng-model="identityProvider.config.principalAttribute" ng-required="identityProvider.config.principalType.endsWith('ATTRIBUTE')">
  184. </div>
  185. <kc-tooltip>{{:: 'saml.principal-attribute.tooltip' | translate}}</kc-tooltip>
  186. </div>
  187. <div class="form-group">
  188. <label class="col-md-2 control-label" for="allowCreate">{{:: 'saml.allow-create' | translate}}</label>
  189. <div class="col-md-6">
  190. <input ng-model="identityProvider.config.allowCreate" id="allowCreate" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  191. </div>
  192. <kc-tooltip>{{:: 'saml.allow-create.tooltip' | translate}}</kc-tooltip>
  193. </div>
  194. <div class="form-group">
  195. <label class="col-md-2 control-label" for="postBindingResponse">{{:: 'http-post-binding-response' | translate}}</label>
  196. <div class="col-md-6">
  197. <input ng-model="identityProvider.config.postBindingResponse" id="postBindingResponse" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  198. </div>
  199. <kc-tooltip>{{:: 'http-post-binding-response.tooltip' | translate}}</kc-tooltip>
  200. </div>
  201. <div class="form-group">
  202. <label class="col-md-2 control-label" for="postBindingAuthnRequest">{{:: 'http-post-binding-for-authn-request' | translate}}</label>
  203. <div class="col-md-6">
  204. <input ng-model="identityProvider.config.postBindingAuthnRequest" id="postBindingAuthnRequest" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  205. </div>
  206. <kc-tooltip>{{:: 'http-post-binding-for-authn-request.tooltip' | translate}}</kc-tooltip>
  207. </div>
  208. <div class="form-group">
  209. <label class="col-md-2 control-label" for="postBindingLogout">{{:: 'http-post-binding-logout' | translate}}</label>
  210. <div class="col-md-6">
  211. <input ng-model="identityProvider.config.postBindingLogout" id="postBindingLogout" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  212. </div>
  213. <kc-tooltip>{{:: 'http-post-binding-logout.tooltip' | translate}}</kc-tooltip>
  214. </div>
  215. <div class="form-group">
  216. <label class="col-md-2 control-label" for="wantAuthnRequestsSigned">{{:: 'want-authn-requests-signed' | translate}}</label>
  217. <div class="col-md-6">
  218. <input ng-model="identityProvider.config.wantAuthnRequestsSigned" id="wantAuthnRequestsSigned" name="wantAuthnRequestsSigned" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  219. </div>
  220. <kc-tooltip>{{:: 'want-authn-requests-signed.tooltip' | translate}}</kc-tooltip>
  221. </div>
  222. <div class="form-group">
  223. <label class="col-md-2 control-label" for="wantAssertionsSigned">{{:: 'want-assertions-signed' | translate}}</label>
  224. <div class="col-md-6">
  225. <input ng-model="identityProvider.config.wantAssertionsSigned" id="wantAssertionsSigned" name="wantAssertionsSigned" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  226. </div>
  227. <kc-tooltip>{{:: 'want-assertions-signed.tooltip' | translate}}</kc-tooltip>
  228. </div>
  229. <div class="form-group">
  230. <label class="col-md-2 control-label" for="wantAssertionsEncrypted">{{:: 'want-assertions-encrypted' | translate}}</label>
  231. <div class="col-md-6">
  232. <input ng-model="identityProvider.config.wantAssertionsEncrypted" id="wantAssertionsEncrypted" name="wantAssertionsEncrypted" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  233. </div>
  234. <kc-tooltip>{{:: 'want-assertions-encrypted.tooltip' | translate}}</kc-tooltip>
  235. </div>
  236. <div class="form-group" data-ng-show="identityProvider.config.wantAuthnRequestsSigned == 'true'">
  237. <label class="col-md-2 control-label" for="signatureAlgorithm">{{:: 'signature-algorithm' | translate}}</label>
  238. <div class="col-sm-6">
  239. <div>
  240. <select class="form-control" id="signatureAlgorithm"
  241. ng-model="identityProvider.config.signatureAlgorithm"
  242. ng-options="alg for alg in signatureAlgorithms">
  243. </select>
  244. </div>
  245. </div>
  246. <kc-tooltip>{{:: 'signature-algorithm.tooltip' | translate}}</kc-tooltip>
  247. </div>
  248. <div class="form-group clearfix block" data-ng-show="identityProvider.config.wantAuthnRequestsSigned == 'true'">
  249. <label class="col-md-2 control-label" for="samlSigKeyNameTranformer">{{:: 'saml-signature-keyName-transformer' | translate}}</label>
  250. <div class="col-md-6">
  251. <div>
  252. <select class="form-control" id="samlSigKeyNameTranformer"
  253. ng-model="identityProvider.config.xmlSigKeyInfoKeyNameTransformer"
  254. ng-options="xmlKeyNameTranformer for xmlKeyNameTranformer in xmlKeyNameTranformers">
  255. </select>
  256. </div>
  257. </div>
  258. <kc-tooltip>{{:: 'saml-signature-keyName-transformer.tooltip' | translate}}</kc-tooltip>
  259. </div>
  260. <div class="form-group">
  261. <label class="col-md-2 control-label" for="forceAuthn">{{:: 'force-authentication' | translate}}</label>
  262. <div class="col-md-6">
  263. <input ng-model="identityProvider.config.forceAuthn" id="forceAuthn" name="forceAuthn" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  264. </div>
  265. <kc-tooltip>{{:: 'identity-provider.force-authentication.tooltip' | translate}}</kc-tooltip>
  266. </div>
  267. <div class="form-group">
  268. <label class="col-md-2 control-label" for="validateSignature">{{:: 'validate-signature' | translate}}</label>
  269. <div class="col-md-6">
  270. <input ng-model="identityProvider.config.validateSignature" id="validateSignature" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  271. </div>
  272. <kc-tooltip>{{:: 'saml.validate-signature.tooltip' | translate}}</kc-tooltip>
  273. </div>
  274. <div class="form-group clearfix" data-ng-show="identityProvider.config.validateSignature == 'true'">
  275. <label class="col-md-2 control-label" for="signingCertificate">{{:: 'validating-x509-certificate' | translate}}</label>
  276. <div class="col-md-6">
  277. <textarea class="form-control" id="signingCertificate" ng-model="identityProvider.config.signingCertificate"></textarea>
  278. </div>
  279. <kc-tooltip>{{:: 'validating-x509-certificate.tooltip' | translate}}</kc-tooltip>
  280. </div>
  281. <div class="form-group">
  282. <label class="col-md-2 control-label" for="signSpMetadata">{{:: 'identity-provider.saml.sign-sp-metadata' | translate}}</label>
  283. <div class="col-md-6">
  284. <input ng-model="identityProvider.config.signSpMetadata" id="signSpMetadata" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  285. </div>
  286. <kc-tooltip>{{:: 'identity-provider.saml.sign-sp-metadata.tooltip' | translate}}</kc-tooltip>
  287. </div>
  288. <div class="form-group">
  289. <label class="col-sm-2 control-label" for="loginHint">{{:: 'saml.loginHint' | translate}}</label>
  290. <div class="col-sm-4">
  291. <input ng-model="identityProvider.config.loginHint" id="loginHint" onoffswitchvalue on-text="{{:: 'onText' | translate}}" off-text="{{:: 'offText' | translate}}" />
  292. </div>
  293. <kc-tooltip>{{:: 'saml.loginHint.tooltip' | translate}}</kc-tooltip>
  294. </div>
  295. <div class="form-group">
  296. <label class="col-md-2 control-label" for="allowedClockSkew">{{:: 'allowed-clock-skew' | translate}}</label>
  297. <div class="col-md-6 time-selector">
  298. <input class="form-control" string-to-number type="number" min="0" max="2147483" step="1" ng-model="identityProvider.config.allowedClockSkew" id="allowedClockSkew"/>
  299. </div>
  300. <kc-tooltip>{{:: 'identity-provider.allowed-clock-skew.tooltip' | translate}}</kc-tooltip>
  301. </div>
  302. <div class="form-group">
  303. <label class="col-md-2 control-label" for="attributeConsumingServiceIndex">{{:: 'identity-provider.saml.attribute-consuming-service-index' | translate}}</label>
  304. <div class="col-md-6">
  305. <input class="form-control" string-to-number type="number" min="0" max="65535" step="1" ng-model="identityProvider.config.attributeConsumingServiceIndex" id="attributeConsumingServiceIndex"/>
  306. </div>
  307. <kc-tooltip>{{:: 'identity-provider.saml.attribute-consuming-service-index.tooltip' | translate}}</kc-tooltip>
  308. </div>
  309. <div class="form-group">
  310. <label class="col-md-2 control-label" for="attributeConsumingServiceName">{{:: 'identity-provider.saml.attribute-consuming-service-name' | translate}}</label>
  311. <div class="col-md-6">
  312. <input class="form-control" type="text" ng-model="identityProvider.config.attributeConsumingServiceName" id="attributeConsumingServiceName"/>
  313. </div>
  314. <kc-tooltip>{{:: 'identity-provider.saml.attribute-consuming-service-name.tooltip' | translate}}</kc-tooltip>
  315. </div>
  316. </fieldset>
  317. <fieldset>
  318. <legend collapsed><span class="text">{{:: 'identity-provider.saml.requested-authncontext' | translate}}</span> <kc-tooltip>{{:: 'identity-provider.saml.requested-authncontext.tooltip' | translate}}</kc-tooltip></legend>
  319. <div class="form-group clearfix">
  320. <label class="col-md-2 control-label" for="authnContextComparisonType">{{:: 'identity-provider.saml.authncontext-comparison-type' | translate}}</label>
  321. <div class="col-md-6">
  322. <div>
  323. <select class="form-control" id="authnContextComparisonType"
  324. ng-init="identityProvider.config.authnContextComparisonType = identityProvider.config.authnContextComparisonType || 'exact'"
  325. ng-model="identityProvider.config.authnContextComparisonType">
  326. <option value="exact">{{:: 'identity-provider.saml.authncontext-comparison-type.exact' | translate}}</option>
  327. <option value="minimum">{{:: 'identity-provider.saml.authncontext-comparison-type.minimum' | translate}}</option>
  328. <option value="maximum">{{:: 'identity-provider.saml.authncontext-comparison-type.maximum' | translate}}</option>
  329. <option value="better">{{:: 'identity-provider.saml.authncontext-comparison-type.better' | translate}}</option>
  330. </select>
  331. </div>
  332. </div>
  333. <kc-tooltip>{{:: 'identity-provider.saml.authncontext-comparison-type.tooltip' | translate}}</kc-tooltip>
  334. </div>
  335. <div class="form-group">
  336. <label for="type" class="col-md-2 control-label">{{:: 'identity-provider.saml.authncontext-class-ref' | translate}}</label>
  337. <div class="col-sm-4">
  338. <div class="input-group" ng-repeat="(i, authnContextClassRef) in authnContextClassRefs track by $index">
  339. <input class="form-control" ng-model="authnContextClassRefs[i]">
  340. <div class="input-group-btn">
  341. <button class="btn btn-default" type="button" data-ng-click="deleteAuthnContextClassRef($index)">
  342. <span class="fa fa-minus"></span>
  343. </button>
  344. </div>
  345. </div>
  346. <div class = "input-group">
  347. <input class="form-control" ng-model="newAuthnContextClassRef" id="newAuthnContextClassRef">
  348. <div class="input-group-btn">
  349. <button class="btn btn-default" type="button" data-ng-click="newAuthnContextClassRef.length > 0 && addAuthnContextClassRef()">
  350. <span class="fa fa-plus"></span>
  351. </button>
  352. </div>
  353. </div>
  354. </div>
  355. <kc-tooltip>{{:: 'identity-provider.saml.authncontext-class-ref.tooltip' | translate}}</kc-tooltip>
  356. </div>
  357. <div class="form-group">
  358. <label for="type" class="col-md-2 control-label">{{:: 'identity-provider.saml.authncontext-decl-ref' | translate}}</label>
  359. <div class="col-sm-4">
  360. <div class="input-group" ng-repeat="(i, authnContextDeclRef) in authnContextDeclRefs track by $index">
  361. <input class="form-control" ng-model="authnContextDeclRefs[i]">
  362. <div class="input-group-btn">
  363. <button class="btn btn-default" type="button" data-ng-click="deleteAuthnContextDeclRef($index)">
  364. <span class="fa fa-minus"></span>
  365. </button>
  366. </div>
  367. </div>
  368. <div class = "input-group">
  369. <input class="form-control" ng-model="newAuthnContextDeclRef" id="newAuthnContextDeclRef">
  370. <div class="input-group-btn">
  371. <button class="btn btn-default" type="button" data-ng-click="newAuthnContextDeclRef.length > 0 && addAuthnContextDeclRef()">
  372. <span class="fa fa-plus"></span>
  373. </button>
  374. </div>
  375. </div>
  376. </div>
  377. <kc-tooltip>{{:: 'identity-provider.saml.authncontext-decl-ref.tooltip' | translate}}</kc-tooltip>
  378. </div>
  379. </fieldset>
  380. <fieldset data-ng-show="newIdentityProvider">
  381. <legend uncollapsed><span class="text">{{:: 'import-external-idp-config' | translate}}</span> <kc-tooltip>{{:: 'import-external-idp-config.tooltip' | translate}}</kc-tooltip></legend>
  382. <div class="form-group" data-ng-show="newIdentityProvider">
  383. <label class="col-md-2 control-label" for="fromUrl">{{:: 'import-from-url' | translate}}</label>
  384. <div class="col-md-6">
  385. <input class="form-control" id="fromUrl" type="text" ng-model="fromUrl.data">
  386. </div>
  387. <kc-tooltip>{{:: 'saml.import-from-url.tooltip' | translate}}</kc-tooltip>
  388. </div>
  389. <div class="form-group">
  390. <label class="col-md-2 control-label" for="importFrom"></label>
  391. <div class="col-md-6">
  392. <button id="importFrom" type="button" data-ng-click="importFrom()" data-ng-show="importUrl" class="btn btn-primary">{{:: 'import' | translate}}</button>
  393. </div>
  394. </div>
  395. <div class="form-group" data-ng-show="newIdentityProvider">
  396. <label class="col-md-2 control-label">{{:: 'import-from-file' | translate}}</label>
  397. <div class="col-md-6">
  398. <div class="controls kc-button-input-file" data-ng-show="!files || files.length == 0">
  399. <label for="import-file" class="btn btn-default">{{:: 'select-file' | translate}} <i class="pficon pficon-import"></i></label>
  400. <input id="import-file" type="file" class="hidden" ng-file-select="onFileSelect($files)">
  401. </div>
  402. <span class="kc-uploaded-file" data-ng-show="files.length > 0">
  403. {{files[0].name}}
  404. </span>
  405. </div>
  406. <div class="form-group">
  407. <label class="col-md-2 control-label" for="importFile"></label>
  408. <div class="col-sm-6" data-ng-show="importFile">
  409. <button id="importFile" type="button" data-ng-click="uploadFile()" data-ng-show="importFile" class="btn btn-primary">{{:: 'import' | translate}}</button>
  410. </div>
  411. </div>
  412. </div>
  413. </fieldset>
  414. <div class="form-group">
  415. <div class="col-md-10 col-md-offset-2">
  416. <button kc-save data-ng-disabled="!changed">{{:: 'save' | translate}}</button>
  417. <button kc-cancel data-ng-click="cancel()" data-ng-disabled="!changed">{{:: 'cancel' | translate}}</button>
  418. </div>
  419. </div>
  420. </form>
  421. </div>
  422. <kc-menu></kc-menu>