<?xml version="1.0" encoding="UTF-8"?>
<!--
     This is example metadata only. Do *NOT* supply it as is without review,
     and do *NOT* provide it in real time to your partners.

     This metadata is not dynamic - it will not change as your configuration changes.     On Demand Metadata Generation available from the metadatagen plugin.
--> 
<EntityDescriptor  xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xml="http://www.w3.org/XML/1998/namespace" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:req-attr="urn:oasis:names:tc:SAML:protocol:ext:req-attr" validUntil="2023-01-03T13:40:33.832Z" entityID="https://idp.mimas.ac.uk/idp/shibboleth">

    <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">mimas.ac.uk</shibmd:Scope>
<!--
    Fill in the details for your IdP here 

            <mdui:UIInfo>
                <mdui:DisplayName xml:lang="en">A Name for the IdP at idp.mimas.ac.uk</mdui:DisplayName>
                <mdui:Description xml:lang="en">Enter a description of your IdP at idp.mimas.ac.uk</mdui:Description>
                <mdui:Logo height="80" width="80">https://idp.mimas.ac.uk/Path/To/Logo.png</mdui:Logo>
            </mdui:UIInfo>
--> 
        </Extensions>

        <!-- First signing certificate is BackChannel, the Second is FrontChannel--> 
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        <!--<ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mimas.ac.uk:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
-->         <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mimas.ac.uk:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>

<!--
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mimas.ac.uk:8443/idp/profile/SAML2/SOAP/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mimas.ac.uk/idp/profile/SAML2/POST/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.mimas.ac.uk/idp/profile/SAML2/POST-SimpleSign/SLO"/>
        <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mimas.ac.uk/idp/profile/SAML2/Redirect/SLO"/>
--> 

        <!--<SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.mimas.ac.uk/idp/profile/Shibboleth/SSO"/>
-->         <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" req-attr:supportsRequestedAttributes="true" Location="https://idp.mimas.ac.uk/idp/profile/SAML2/POST-SimpleSign/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" req-attr:supportsRequestedAttributes="true" Location="https://idp.mimas.ac.uk/idp/profile/SAML2/Redirect/SSO"/>
        <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" req-attr:supportsRequestedAttributes="true" Location="https://idp.mimas.ac.uk/idp/profile/SAML2/POST/SSO"/>

    </IDPSSODescriptor>


<!--    <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">

        <Extensions>
            <shibmd:Scope regexp="false">mimas.ac.uk</shibmd:Scope>
        </Extensions>

        --> <!-- First signing certificate is BackChannel, the Second is FrontChannel-->  <!--
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="signing">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>
MIIDJzCCAg+gAwIBAgIUExVE+BsgxiwDLoOHU9bL+UpPdVEwDQYJKoZIhvcNAQEF
BQAwGjEYMBYGA1UEAxMPaWRwLm1pbWFzLmFjLnVrMB4XDTEwMTAwNDE3MDczOFoX
DTMwMTAwNDE3MDczOFowGjEYMBYGA1UEAxMPaWRwLm1pbWFzLmFjLnVrMIIBIjAN
BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4w7U5gd6/ifZvu0vwr4rK9zY08DO
uxfZDkOAoXnfL6w31loHJQaM1ezLKs9RxVgHk++2vzFUn5Y70Bj7vOEOtaevjsKU
VrnJZGpj7pwRtRZinpVUjlT/a8sQUhjDjnag1RceLYthPG8BTd5whlWGLl0+aQHD
QbwdPcRqEml+6TZG8sxTZIukWqtdTCzVMl+EYfdclCqDKUFMXm3Uz15OzUje53Bv
WIaX2ThmUyqiDPHPGCfknwtcsKYcc3ztyokCamTH7U5FuxJMkTlzrieXJvHGTRjZ
uDHQhN6ulvr7/5Zt1v9OngZxptFc5ICUe8YqLelBgpWfeekXwLgP2AOzVQIDAQAB
o2UwYzBCBgNVHREEOzA5gg9pZHAubWltYXMuYWMudWuGJmh0dHBzOi8vaWRwLm1p
bWFzLmFjLnVrL2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBRoLGk6jr37RIvGJJ9m
Nu2cx/xIRDANBgkqhkiG9w0BAQUFAAOCAQEAxv3qV8i0hLx/UCzgEerrDs0mrMQi
2ZZYQQAAfrZmMSAryZu2yBc87Ibku5dbKps89fA47KYG+Fro/ixdx1DTrkod2Gwz
28MMRa3WTp3KxOq7NMCSrsk7OEEwyeYo3Ozw1Evmm4LRh3i0MpMNo9SunlU9Xfjk
UO2RBp6YWrNL3uOWrdskey+qbXzhnQNGnLqpsL1MDI/tmrWxsyxcjnEyG4F7FSku
fvrpFwCGZkEH+4xIDCEGFTxBWBy7Ex/MJ7ltPBeOwej+omCGkJxJcAbzaBsM+5AM
fRhXAFKoBmWmKAGSKfZDAIj7HXfN/kBwjy0PyOt8kPDXrvqGmveft0zUvg==
                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>
        <KeyDescriptor use="encryption">
            <ds:KeyInfo>
                    <ds:X509Data>
                        <ds:X509Certificate>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                        </ds:X509Certificate>
                    </ds:X509Data>
            </ds:KeyInfo>

        </KeyDescriptor>

        --> <!--<AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mimas.ac.uk:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>-->  <!--
        --> <!-- If you uncomment the above you should add urn:oasis:names:tc:SAML:2.0:protocol to the protocolSupportEnumeration above-->  <!--
        --> <!--<AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mimas.ac.uk:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>-->  <!--

    </AttributeAuthorityDescriptor>--> 

</EntityDescriptor>
