<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.
-->
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" entityID="https://idptest.osfc.ac.uk/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">

        <Extensions>
            <shibmd:Scope regexp="false">osfc.ac.uk</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idptest.osfc.ac.uk</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idptest.osfc.ac.uk</mdui:Description>
                <mdui:Logo height="80" width="80">https://idptest.osfc.ac.uk/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
-->
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDMzCCAhugAwIBAgIUIoj+5CoBTfkwwaeLtJ6zLSqSPzwwDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAwwSaWRwdGVzdC5vc2ZjLmFjLnVrMB4XDTE3MDcxMjEyMDM0
M1oXDTM3MDcxMjEyMDM0M1owHTEbMBkGA1UEAwwSaWRwdGVzdC5vc2ZjLmFjLnVr
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhaolfImQs36wJDKdhWWh
5NlWC0xl7ZalzixaYjvHUN8Dsx8fjFp4hyhvHFbxMQEZ1qhBaAWYJWum+22m8syx
ElBE0RckKBGfa/pCAkUfm0FyFZGWfJLmsWmRjTHQErgJCxWVnFqwFBRSnqF2sZsA
VUyqQ/GYSrrtQPaKw5x3K9Ouy0J2AQCXCGD6XNJ+0e5AUJNEFRgHG7x2vrOMKP/6
rbw+BxSHh8Hv+neMBImSZMz1VYIERzVeDaGpV8idHDxrjqq9gMqnqAjsFfwhmVZp
wdePshraJKuLNj7wfg1OT0ehkoE2y6f4rXsUq/nk+jFYIddOAziN9zMsG/BrKlXO
wwIDAQABo2swaTAdBgNVHQ4EFgQUUuBYHnIgY50cy/u3/PDvOxy/tUUwSAYDVR0R
BEEwP4ISaWRwdGVzdC5vc2ZjLmFjLnVrhilodHRwczovL2lkcHRlc3Qub3NmYy5h
Yy51ay9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAbj3UJ9z1pzHc
3zKFolg1vx1hkem+0MzSdU/49PawjfKuzZ+Pn7wpDtRbmVdb/gqbq48y56zoIAe3
yYm3Jf+pmBC7vXEu2cRPSQXg64Di5vM+QgitHyGE0tH8SfvfdEqHJEbDCvs1CnJO
rjzqNKrH3lHDJFSkc6AajCIPlK93B7TsziXoodmsrMRyw4sW9VQztV1Elm3KiDTZ
BfL0Inn+g6bXfwit+fuOn3rhFkbMxtO/1pz9sim2h2zANZGFEFb1w4qxc4poSXga
ensgS0nghpfkiHRTbc8ZlWOSGg6NMxrPMDeZHQj3HZ34U0lCw/kPhvIC6Q+gSWZZ
38BToR9zXw==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idptest.osfc.ac.uk:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
        <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idptest.osfc.ac.uk:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

        <!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idptest.osfc.ac.uk/idp/profile/SAML2/Redirect/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idptest.osfc.ac.uk/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idptest.osfc.ac.uk/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idptest.osfc.ac.uk:8443/idp/profile/SAML2/SOAP/SLO"/>
        -->

        <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idptest.osfc.ac.uk/idp/profile/Shibboleth/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idptest.osfc.ac.uk/idp/profile/SAML2/POST/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idptest.osfc.ac.uk/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idptest.osfc.ac.uk/idp/profile/SAML2/Redirect/SSO"/>

    </IDPSSODescriptor>


    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">osfc.ac.uk</shibmd:Scope>
        </Extensions>

        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDMzCCAhugAwIBAgIUIoj+5CoBTfkwwaeLtJ6zLSqSPzwwDQYJKoZIhvcNAQEL
BQAwHTEbMBkGA1UEAwwSaWRwdGVzdC5vc2ZjLmFjLnVrMB4XDTE3MDcxMjEyMDM0
M1oXDTM3MDcxMjEyMDM0M1owHTEbMBkGA1UEAwwSaWRwdGVzdC5vc2ZjLmFjLnVr
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhaolfImQs36wJDKdhWWh
5NlWC0xl7ZalzixaYjvHUN8Dsx8fjFp4hyhvHFbxMQEZ1qhBaAWYJWum+22m8syx
ElBE0RckKBGfa/pCAkUfm0FyFZGWfJLmsWmRjTHQErgJCxWVnFqwFBRSnqF2sZsA
VUyqQ/GYSrrtQPaKw5x3K9Ouy0J2AQCXCGD6XNJ+0e5AUJNEFRgHG7x2vrOMKP/6
rbw+BxSHh8Hv+neMBImSZMz1VYIERzVeDaGpV8idHDxrjqq9gMqnqAjsFfwhmVZp
wdePshraJKuLNj7wfg1OT0ehkoE2y6f4rXsUq/nk+jFYIddOAziN9zMsG/BrKlXO
wwIDAQABo2swaTAdBgNVHQ4EFgQUUuBYHnIgY50cy/u3/PDvOxy/tUUwSAYDVR0R
BEEwP4ISaWRwdGVzdC5vc2ZjLmFjLnVrhilodHRwczovL2lkcHRlc3Qub3NmYy5h
Yy51ay9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAbj3UJ9z1pzHc
3zKFolg1vx1hkem+0MzSdU/49PawjfKuzZ+Pn7wpDtRbmVdb/gqbq48y56zoIAe3
yYm3Jf+pmBC7vXEu2cRPSQXg64Di5vM+QgitHyGE0tH8SfvfdEqHJEbDCvs1CnJO
rjzqNKrH3lHDJFSkc6AajCIPlK93B7TsziXoodmsrMRyw4sW9VQztV1Elm3KiDTZ
BfL0Inn+g6bXfwit+fuOn3rhFkbMxtO/1pz9sim2h2zANZGFEFb1w4qxc4poSXga
ensgS0nghpfkiHRTbc8ZlWOSGg6NMxrPMDeZHQj3HZ34U0lCw/kPhvIC6Q+gSWZZ
38BToR9zXw==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idptest.osfc.ac.uk:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
        <!-- <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idptest.osfc.ac.uk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/> -->
        <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above -->

    </AttributeAuthorityDescriptor>

</EntityDescriptor>
